expression-language-injection
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is not malware by itself, but it is a high-risk offensive exploitation guide for AI agents. Its capabilities are coherent with its stated purpose, yet that purpose is to detect, weaponize, and operationalize EL injection into RCE against live systems, so it should be classified as SUSPICIOUS/HIGH RISK rather than benign.
Confidence: 95%Severity: 88%
Audit Metadata