Clinejection: How One GitHub Issue Title Turned into a Supply Chain Incident
On February 17, 2026, Cline 2.3.0 was compromised via an AI-driven CI/CD attack chain that began with prompt injection in a GitHub issue title and ended with a malicious npm release that silently installed an unauthorized AI-capable tool.
#Security
#AI Agents 5 min read