wechat-search
Warn
Audited by Snyk on Aug 15, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). Skill运行时通过调用红狐接口
https://redfox.hk/story/api/gzh/search/hotArticleNew获取的文章title/summary/author/url/...等字段会被直接注入到输出(JSON/HTML),而这些文本最终来自外部作者的公众号内容,属于LLM在运行时可读的自由文本注入面。
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata