testing-for-xxe-injection-vulnerabilities
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK offensive skill. Its purpose is coherent with its capabilities, but the capabilities themselves give an AI agent practical exploit, scanning, and exfiltration procedures, including use of known OOB capture services and attacker-controlled sinks. The personal-repo XXEinjector install adds supply-chain risk. Not confirmed malware, but clearly a high-risk exploit skill.
Confidence: 96%Severity: 96%
Audit Metadata