2026-09-20T23:22:28.549Z
- publishedAt:
Not provided→ 2025-07-15T00:00:00.000Z
SOURCE-LINKED INTELLIGENCE
A security researcher reported a vulnerability in Meta AI's deployed chatbot service that, under certain conditions, could allow an unauthorized user to view another user's prompts and AI-generated responses. The flaw reportedly involved guessable prompt IDs and insufficient server-side authorization checks. Meta reportedly fixed the issue in January 2025 and found no evidence of malicious exploitation, awarding the researcher a bug bounty.
Read original source ↗ Open in workspace
Reported occurrence date: 2024-12-26T00:00:00.000Z
AI Incident Database, Responsible AI Collaborative; McGregor (2021), Preventing Repeated Real World AI Failures by Cataloging Incidents. Incident-specific contributor credits are available at each citation link. Metadata adapted; article text excluded.
License: CC BY-SA 4.0
First collected: 2026-09-19T22:50:59.123Z. This is not the publication date.
AIIC observation times, not verified publisher revision times. Up to eight recent revisions.