syncfusion-angular-file-manager

Warn

Audited by Snyk on Mar 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The skill's required workflow (e.g., "Getting Started" and the Quick Start examples in SKILL.md) explicitly configures ajaxSettings with external endpoints (for example the sample Azure service URL) and documents custom file providers (Google Drive, AWS S3, Firebase), so the component fetches and interprets untrusted/public third‑party/user‑generated content at runtime which can directly influence file‑operation actions and event-driven behavior.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 25, 2026, 04:41 PM
Issues
1