Microsoft discloses Claude Code vulnerability exposing secrets in CI/CD
Microsoft found a prompt injection vulnerability in Anthropic's Claude Code that can trick the AI into reading system files and leaking API keys from CI/CD workflows. A fix was released in version 2.1.128.