post-incident-analysis
Warn
Audited by Snyk on Aug 3, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). ServiceNow Security Operations PIR workflow reads work notes/comments, audit log field history, and related task/observable text from incident-scoped tables (sn_si_incident, sys_journal_field, sn_si_task, sys_audit) based on an incident sys_id/number.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata