GITHUB_TOKEN, ANTHROPIC_API_KEY, GEMINI_API_KEY
with no attacker interaction. Attack fires automatically on pull_request events.
No CVE assigned. Anthropic paid $100 bounty.
[7]
chat.tools.autoApprove: true into .vscode/settings.json,
disabling all user confirmations.