By exploiting how AI coding agents retrieve and verify plugins, researchers were able to execute malicious code even when the agent was told to use a trusted, approved version.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results