cmdi-command-injection
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS/HIGH-RISK skill. Its stated purpose is to help perform command-injection attacks, and its actual footprint is fully aligned with offensive exploitation: payload libraries, exfiltration, reverse shells, and exploit chaining. It is not covert malware by itself, but it materially equips an AI agent to execute harmful security attacks and data theft.
Confidence: 96%Severity: 92%
Audit Metadata