litestar-file-uploads
Warn
Audited by Snyk on Mar 9, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.70). The skill explicitly ingests untrusted, user-provided multipart file uploads (see SKILL.md Execution Workflow steps: "Type incoming multipart fields with
UploadFile" and "Validate file metadata and content before persistence or downstream processing"), so arbitrary third-party file content could be read and influence downstream processing or actions.
Audit Metadata