The flaw allows an unauthenticated attacker to craft a GitHub Issue in an org's public repository and then silently pull data from its private repos, too.

'GitLost' vulnerability let GitHub's AI workflows leak private repositories - SiliconANGLE

The issue affects GitHub Agentic Workflows setups that read public input, hold private repo access, and can post output publicly.