A vulnerability, which was classified as critical , was found in Black Lantern Security BBOT up to 2.8.4 . This impacts an unknown function of the component github_workflows . The manipulation results in link following. This vulnerability is known as CVE-2026-12567 . Attacking locally is a requirement. No exploit is available. It is best practice to apply a patch to resolve this issue.