From d72372c246b462ceaa5f85dcc2ffd72203501ead Mon Sep 17 00:00:00 2001 From: Sotiris Dragonas <36576941+BazookaMusic@users.noreply.github.com> Date: Tue, 16 Jun 2026 11:57:37 +0300 Subject: [PATCH] Fix system prompt injection description and title Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com> --- javascript/ql/src/Security/CWE-1427/SystemPromptInjection.ql | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/javascript/ql/src/Security/CWE-1427/SystemPromptInjection.ql b/javascript/ql/src/Security/CWE-1427/SystemPromptInjection.ql index 19394d4c868..b4e40cf9b3c 100644 --- a/javascript/ql/src/Security/CWE-1427/SystemPromptInjection.ql +++ b/javascript/ql/src/Security/CWE-1427/SystemPromptInjection.ql @@ -1,5 +1,6 @@ /** - * @name Prompt injection + * @name System prompt injection + * @description Untrusted input flowing into a system prompt, developer prompt, or tool description of an AI model may allow an attacker to manipulate the model's behavior. * @kind path-problem * @problem.severity error * @security-severity 5.0