Hugging Face Hub CI/CD Misconfiguration Allows Malicious Pull Request to Steal Secrets and Compromise Repositories | AI Breaking Wire