expression-language-injection
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent as an EL-injection exploitation playbook, but that stated purpose is itself a high-risk offensive capability for an AI agent. There is no supply-chain or credential-harvesting behavior in the skill text, yet it meaningfully enables remote exploitation, sandbox bypass, command execution, and output exfiltration against target systems.
Confidence: 95%Severity: 92%
Audit Metadata