A critical prompt injection vulnerability in GitHub Agentic Workflows could allow unauthenticated attackers to leak private repository data,

'GitLost' vulnerability let GitHub's AI workflows leak private repositories - SiliconANGLE

The issue affects GitHub Agentic Workflows setups that read public input, hold private repo access, and can post output publicly.