Google's Agent Development Kit (ADK) Python repository contained three workflows that were vulnerable to prompt injection, allowing an attacker to trigger a privileged agent and execute arbitrary code on the CI runner.
Google's Agent Development Kit (ADK) Python repository contained three workflows that were vulnerable to prompt injection, allowing an attacker to trigger a privileged agent and execute arbitrary code on the CI runner.