linux-at-spi2
Warn
Audited by Snyk on Jun 16, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.75). The required runtime workflow is AT-SPI2/D-Bus accessibility automation (e.g., traversing the accessibility object tree and reading object text via
obj.get_text()/get_desktop()), which ingests free-form UI text authored by other applications/users; this text is not authored by the operating user and can include arbitrary content, creating an indirect prompt-injection surface through LLM context if that text is forwarded.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata