Seven ChatGPT Vulnerabilities Expose User Data to Theft and Hijacking

Seven ChatGPT Vulnerabilities Expose User Data to Theft and Hijacking

First seen 2 Dec 2025, 18:33 UTC TenableSecuritybriefDarkreadingAustraliancybersecuritymagazine.AuPetri+2 19.4

Article Content

Browse articles
ThreatCluster

Tenable Research identified seven critical vulnerabilities in OpenAI's ChatGPT models, including ChatGPT-4o and ChatGPT-5, that could allow attackers to steal personal data and hijack user conversations. The vulnerabilities involve indirect prompt injections and other techniques that could lead to data exfiltration and persistent malicious control over the AI's responses. Some issues remain unresolved, posing ongoing risks to users.

Ask AI about this cluster