nextjs-tinacms
Warn
Audited by Snyk on Aug 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Outsider-authored content from Tina Cloud (Git repo via Tina Cloud API) is fetched by the required runtime workflow through the generated Tina GraphQL client in the server component (
client.queries.page({ relativePath: \${slug}.md` })) and then rendered via the clientuseTina()` wrapper for visual editing.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata