One Click GitHub Dev Vulnerability Exposes Full GitHub OAuth Tokens To Attackers
Cybersecurity researchers have disclosed a one click attack affecting GitHub.dev through VS Code that could allow attackers to steal GitHub OAuth tokens with access to private repositories.