web-xxe
Audited by Socket on Sep 20, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS/HIGH-RISK skill. It is internally coherent as an XXE exploitation playbook, but its stated purpose is to help an AI agent perform offensive security actions: file theft, SSRF, and out-of-band exfiltration against target systems. No meaningful supply-chain risk is present, yet the operational risk is high because it equips the agent with exploit techniques and attacker-controlled callback flows.
The fragment documents XXE exploitation techniques and would enable file disclosure, SSRF, and data exfiltration against vulnerable XML-processing applications. It contains no executable malware or package-specific malicious behavior by itself, but it is high-impact offensive security content and describes dangerous payloads. The assessment is limited to the supplied documentation.