syncfusion-winui-combobox

Warn

Audited by Snyk on Mar 25, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.70). The skill's required docs instruct using real-time API searches that update ItemsSource (references/filtering.md "ApiSearchFilterBehavior" / "Real-Time API Search") and bind image URLs (e.g., PhotoUrl/IconUrl in the Searchable Employee Directory example in SKILL.md) which clearly cause the control to fetch and interpret external/untrusted third‑party content at runtime and can change filtering/selection behavior.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 25, 2026, 04:52 PM
Issues
1