CVE-2026-5366:Prefect version 3.6.23 is vulnerable to remote code execution due to improper handling of user-controlled input in the `
Prefect version 3.6.23 is vulnerable to remote code execution due to improper handling of user-controlled input in the `GitRepository` storage class. The `commit_sha` parameter, which is passed to git commands, lacks validation and does not include a `--`