syncfusion-angular-autocomplete
Warn
Audited by Snyk on Mar 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The documentation explicitly instructs binding the component to remote, public data sources (e.g., DataManager/OData/Web API examples in references/data-binding.md and other examples using https://services.odata.org and HttpClient), so the agent will fetch and act on untrusted public web content that can affect filtering, suggestions, and subsequent selection-driven behavior.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata