Claude Code (Anthropic's AI coding tool) had a workspace trust bypass because repository settings loaded before the trust dialog was shown (CVE-2026-33068)

Spring AI vector store filter injection old bugs, new infrastructure (JSONPath + SQL injection in RAG access controls)

If you're building with AI agents, here's what's attacking your users - 74K interactions analysed