syncfusion-aspnetcore-dropdownlist

Warn

Audited by Snyk on Apr 29, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.90). The skill's documentation and workflow (e.g., references/advanced-scenarios.md "Loading Data from External API" and references/data-binding.md remote data binding/OData examples) explicitly show using DataSource URLs and HttpClient calls to public APIs (for example https://api.example.com and services.odata.org), so the component is designed to fetch and consume untrusted third-party web content which can influence UI behavior and subsequent actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 29, 2026, 09:21 PM
Issues
1