The article examines two recent security breaches in the Cline AI agent that reveal a fundamental vulnerability: AI agents interpret untrusted content as executable instructions, and package registries and agent workflows lack safeguards for an era where autonomous systems consume code dependencies.