Attacks/Context Manipulation/CM-008
CRITICALCWE-20

CM-008 Multi-Session Poisoning

Context ManipulationAttempts to poison agent context or memory

Description

Tests if context can be poisoned across sessions

Remediation

Implement strict memory isolation. Do not allow user-controlled persistent state.

Severity

CRITICAL

OASB Control

8.1

CWE

CWE-20

Run this test

$ npx hackmyagent attack --payload CM-008