Skip to content

Hide Navigation Hide TOC

Indirect PI — XSS Payload Injection in Agent-Consumed Content - ATR-2026-00701 (4cbbcafe-b6b0-53b2-ab07-8d69243948ca)

Detects indirect prompt injection that smuggles an XSS payload inside content consumed by an agent (web pages, documents, tool outputs). The attacker instructs the agent to reproduce an or