jndi-injection

Fail

Audited by Snyk on Jul 21, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). The file is an explicit attack playbook: it documents JNDI/Log4Shell exploitation techniques, demonstrates remote-code-loading and serialized-gadget RCE paths, provides commands to run attacker-controlled RMI/LDAP/HTTP servers, and includes payloads that exfiltrate environment secrets — clearly malicious and intended to enable exploitation and data theft.

Issues (1)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 21, 2026, 01:23 PM
Issues
1
Security Audit — snyk — jndi-injection