Definition
A flaw where an AI tool builds a document or response by filling in a reusable 'template,' and an attacker sneaks in special code instead of ordinary text — tricking the template engine into running that code on the server. In AI prompt-template systems this can hand an attacker full control of the machine running the model.
Why it matters
Prompt templates are shared and reused across many AI applications, so one flawed template format can expose every product built on it — this is a maximum-severity flaw class regulators and auditors will start asking vendors about directly.