vulnerability-triage-brocards
Warn
Audited by Snyk on Jul 30, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (medium risk: 0.30). The runtime path described is an evaluation of “incoming vulnerability report[s]” provided as raw text into the triage workflow; that report content is outsider-authored and is explicitly what the LLM reasons over to produce the brocard verdicts.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata