T08 · Insecure Dependencies
- Location
references/cli-common.md:10- Finding
Mutable Package Execution Through npx Using the latest Tag
- Content
View full analysis
" ``` From `references/cli-common.md:37-40`: ```bash npx @delilegal/deli-cli@latest cmds litigation-fee-calculator@1.0.0 ``` From `references/cli-litigation-fee-guide.md:18-20`: ```bash npx @delilegal/deli-cli@latest run_a1b2c3d4e5f6 calculate --long-text "Property case with a claim amount of CNY 1.5 million; calculate the case acceptance fee and return a segmented breakdown" npx @delilegal/deli-cli@latest run_a1b2c3d4e5f6 estimate --long-text "Divorce case involving property division of CNY 2.5 million; no local base-fee standard was provided, so estimate using the statutory lower bound" npx @delilegal/deli-cli@latest run_a1b2c3d4e5f6 fee-calc --long-text "Apply for property preservation involving CNY 1.2 million; calculate the application fee and determine whether the CNY 5,000 cap applies" ``` ### Technical Analysis The Skill repeatedly directs the Agent to execute `@delilegal/deli-cli@latest` through `npx`. When the package is not already available locally, `npx` may retrieve it from the configured package registry and execute its package code immediately. The `latest` tag is mutable and does not identify an immutable, previously audited release. The repository does not pin an exact dependency version, provide a lockfile or integrity hash, or require verification of the package source before execution. Consequently, the code that ultimately runs can change without any modification to this Skill package. Package lifecycle scripts may also execute during installation unless separately restricte ...[truncated 1498 chars]- Remediation
View remediation
