Threats Tagged 'cwe-1427'
View all threats tagged with 'cwe-1427'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cwe-1427'
Click on any threat for detailed analysis and mitigation recommendations
0 Improper neutralization of input used for llm prompting in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network. Join the discussion | GCVE Database | 08/28/2026, 17:41:29 UTC Added: 08/29/2026, 15:17:03 UTC |
0 Improper neutralization of input used for llm prompting in Microsoft Edge for iOS allows an unauthorized attacker to perform spoofing over a network. Join the discussion | CVE Database V5 | 08/28/2026, 17:41:29 UTC Added: 08/28/2026, 19:40:00 UTC |
0 CVE-2026-78379 is a critical vulnerability in Amazon Strands Agents Tools prior to version 0.8.5. It involves improper neutralization of input used for large language model (LLM) prompting in the python_repl tool. This flaw allows remote attackers to execute arbitrary Python code on the host running the agent by bypassing the human consent mechanism through a crafted prompt. The issue is mitigated by upgrading to version 0.8.5 or later. Join the discussion | CVE Database V5 | 08/25/2026, 19:05:57 UTC Added: 08/25/2026, 19:07:43 UTC |
0 Bulletin ID: 2026-072-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 08/03/2026 13:30 PM PDT Description: Strands Agents is an open-source SDK for building AI agents. The strands-agents-tools package provides pre-built tools for use with the SDK, including the shell tool for executing operating system commands on the agent's host. We identified CVE-2026-18733. The shell tool includes a human consent gate that prompts the operator to approve commands before they run. The tool also exposed a non_interactive parameter in the input schema that the large language model (LLM) could control. A crafted prompt, for example one delivered through untrusted content the agent reads (indirect prompt injection), could set non_interactive to true, which bypasses the consent gate and allows arbitrary operating system commands to execute on the agent's host without operator approval. Impacted versions: < 0.8.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin. Join the discussion | AWS Security Bulletins | 08/20/2026, 21:35:57 UTC Added: 08/03/2026, 20:45:32 UTC |
0 HCL AION is affected by a vulnerability where indirect prompt injection can lead to HTML injection in rendered output. Injected markup may be displayed to users, potentially resulting in unintended behavior or security impact under certain conditions. Join the discussion | CVE Database V5 | 08/13/2026, 13:24:30 UTC Added: 08/13/2026, 13:57:05 UTC |
0 Eclipse Theia versions prior to 1.71.0 automatically load files matching the pattern .prompts/*.prompttemplate from a workspace, which can override or extend AI agent system prompts. This behavior allows an attacker to craft a malicious repository that replaces the AI's system instructions with attacker-controlled content, leading to indirect prompt injection. Exploitation combined with other AI chat features in untrusted workspaces can result in data exfiltration via Markdown image rendering or arbitrary command execution via task definitions. The vulnerability has a high severity with a CVSS score of 8.4. Join the discussion | CVE Database V5 | 06/18/2026, 14:26:59 UTC Added: 06/18/2026, 15:20:12 UTC |
0 Eclipse Theia versions prior to 1.71.0 contain a vulnerability where the AI chat agent improperly neutralizes input used for prompting. Specifically, workspace file and directory names are processed as part of the prompt context without differentiation from system instructions. This flaw allows attackers to craft malicious repositories with adversarial file or directory names that can manipulate the AI agent's behavior, potentially leading to data exfiltration or arbitrary command execution. Join the discussion | CVE Database V5 | 06/18/2026, 14:22:33 UTC Added: 06/18/2026, 15:20:12 UTC |
0 MCP Calculate Server is a mathematical calculation service based on MCP protocol and SymPy library. Prior to 0.1.1, the use of eval() to evaluate mathematical expressions without proper input sanitization leads to remote code execution. This vulnerability is fixed in 0.1.1. Join the discussion | CVE Database V5 | 05/15/2026, 16:58:13 UTC Added: 05/15/2026, 17:22:45 UTC |
0 nnU-Net is a semantic segmentation framework that automatically adapts its pipeline to a dataset. Prior to 2.4.1, the nnU-Net Issue Triage workflow in .github/workflows/issue-triage.yml is vulnerable to Agentic Workflow Injection. The workflow sets allowed_non_write_users: ${{ github.event.issue.user.login }}, which means any logged-in GitHub user who opens an issue can reach this agentic workflow with attacker-controlled content. Untrusted issue title and body content are embedded directly into the prompt of anthropics/claude-code-action, and the workflow then runs a command-capable Claude agent with permission to comment on and relabel the current issue via gh. Because this workflow is triggered automatically on issues.opened, an external attacker can submit a crafted issue that steers the agent beyond its intended issue-triage purpose and influences authenticated issue actions. This vulnerability is fixed in 2.4.1. Join the discussion | CVE Database V5 | 05/12/2026, 20:41:32 UTC Added: 05/12/2026, 20:51:31 UTC |
0 CVE-2026-4399 is a prompt injection vulnerability in the 1millionbot Millie chatbot version 3.6.0. It allows attackers to bypass chat restrictions by crafting inputs that cause the model to execute unintended instructions, potentially revealing prohibited information or performing out-of-context tasks. This vulnerability can lead to abuse of the chatbot service and misuse of associated resources, including OpenAI's API key. The vulnerability has a high severity score of 8.7 but no known exploits in the wild have been reported. No official patch or remediation guidance is currently available. Join the discussion | CVE Database V5 | 03/31/2026, 10:10:08 UTC Added: 03/31/2026, 10:38:17 UTC |
Showing 1 to 10 of 14 results