Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The template inserts attacker-controlled markup into multiple containers via innerHTML, so any supplied artwork HTML can include script execution, event handlers, iframes, network requests, or UI overlays. In this skill’s context, the placeholder is explicitly meant to be replaced with arbitrary user- or model-generated HTML, which makes this an actual code-injection sink rather than a theoretical issue.
