Indirect Prompt Injection - Vulnerability

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
November 6, 2025
Last Seen
June 1, 2026

Indirect Prompt Injection is a vulnerability tracked across 3 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed November 6, 2025; most recent activity June 1, 2026.

Overview

Indirect Prompt Injection is a vulnerability class where crafted prompts or contextual inputs influence an AI system to reveal sensitive data or bypass guardrails, often without modifying the model itself. It enables data exfiltration or unintended actions through manipulation of prompts, system prompts, or integration points, making it a significant risk for ChatGPT-like deployments and other LLM-enabled applications.

Related Threat Clusters

Recent Intelligence Reports

  • Financial Data Crisis! ChatGPT Spreadsheet Plugin Exposes Serious Security Vulnerability — News.Aibase · June 1, 2026
  • Multiple ChatGPT Security Bugs Allow Rampant Data Theft — Darkreading · November 6, 2025
  • Seven ChatGPT flaws expose user data to attack, Tenable warns — Securitybrief · November 6, 2025

CVSS v3.1 Breakdown