Sometimes, because of whatever history and the like, the only ideas available are bad ideas and you need to pick the least-bad from amongst them, so yeah, you can find in-band signalling (that is, where instructions are filtered out of untrusted inputs) in use in the real world.
If you can, though, using some other kind of way of providing instructions entirely separately from the data your machine acts on? That's much better and more secure.