arkweb-security-patch-fetch
Warn
Audited by Snyk on Aug 8, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). skill requires reading
.ace-outputs/{runId}/{issue_id}/01_issue_analysis.jsonto obtainupstream_fix_prs[], and those candidate URLs/identifiers are then fetched and parsed at runtime viafetch_chromium_patch.py(http_get-> Gerrit/Gitiles/GitHub patch content and file-list), so outsider-authored free text can be injected indirectly by submitting a poisonedupstream_fix_prs[]entry into that JSON path.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata