ATLAS Landscape
AML.T0051.000

Direct

An adversary may inject prompts directly as a user of the LLM. This type of injection may be used by the adversary to gain a foothold in the system or to misuse the LLM itself, as for example to generate harmful content.

Severity CVE CVSS
CRITICAL CVE-2026-39888 10.0
CRITICAL CVE-2026-30741 9.8
CRITICAL CVE-2024-7042 9.8
CRITICAL CVE-2026-41265 9.8
CRITICAL CVE-2023-29374 9.8
CRITICAL CVE-2023-38896 9.8
CRITICAL CVE-2023-38860 9.8
CRITICAL CVE-2023-36095 9.8
CRITICAL CVE-2026-41264 9.8
CRITICAL CVE-2026-27966 9.8
CRITICAL CVE-2024-8309 9.8
CRITICAL CVE-2024-12366 9.8
CRITICAL CVE-2024-23751 9.8
CRITICAL CVE-2023-32785 9.8
CRITICAL CVE-2026-44211 9.6
HIGH CVE-2026-41138 8.8
HIGH CVE-2026-39891 8.8
HIGH GHSA-f228-chmx-v6j6 8.3
HIGH CVE-2026-41271 8.3
HIGH GHSA-hr5v-j9h9-xjhg 7.7
HIGH CVE-2023-32786 7.5
HIGH CVE-2026-26321 7.5
HIGH CVE-2024-58339 7.5
HIGH CVE-2024-58340 7.5
HIGH GHSA-6r77-hqx7-7vw8 7.1
HIGH CVE-2024-12911 7.1
MEDIUM GHSA-gpx9-96j6-pp87 6.5
MEDIUM CVE-2026-44222 6.5
MEDIUM CVE-2026-40087 5.3
MEDIUM CVE-2026-40151 5.3
MEDIUM GHSA-926x-3r5x-gfhw 5.3
CRITICAL GHSA-v38x-c887-992f
HIGH CVE-2025-65106
CRITICAL CVE-2026-25481
UNKNOWN CVE-2026-33873
UNKNOWN CVE-2026-4399
UNKNOWN CVE-2024-10950
HIGH CVE-2026-40160
HIGH GHSA-28g4-38q8-3cwc