Skip to content

Hide Navigation Hide TOC

IMG onerror XSS Injection via Indirect Prompt Injection - ATR-2026-01451 (2c0addc8-9149-5b7f-b20f-dc598eb4a9e0)

Detects indirect prompt injection payloads that instruct an LLM to include an tag in its rendered output. The img onerror pattern fires when a broken image URL triggers the error handler; if the LLM echoes this tag into a web-rendered interface the JavaScript executes in the victim's browser. Distinct from the SVG vector (ATR-2026-01450): this rule targets the img+onerror event specifically, which has different evasion patterns (src='not-exist', src=x) and different filtering bypass surface. Probe corpus: withsecure indirect-PI XSS dataset — 102 samples using with substitution.

Cluster A Galaxy A Cluster B Galaxy B Level
LLM Prompt Injection (19cd2d12-66ff-487c-a05c-e058b027efc9) MITRE ATLAS Attack Pattern IMG onerror XSS Injection via Indirect Prompt Injection - ATR-2026-01451 (2c0addc8-9149-5b7f-b20f-dc598eb4a9e0) Agent Threat Rules 1