Local llms can get offline searched for vulnerabilities using gradient based attacks. they will always be very easy to prompt inject.