T08 · Insecure Dependencies
- Location
SKILL.md:15- Finding
Unpinned npm Package Execution in Installation Command
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, line 15
Vulnerability Type: Unpinned third-party dependency execution
Risk Level: MediumVulnerable Code:
yaml install: "npx clawhub install values-clarification"Technical Analysis
The installation command invokes
clawhubthroughnpxwithout specifying a package version, integrity hash, or trusted registry. If the package is not already available locally,npxmay retrieve and execute the package currently resolved by the configured npm registry.Consequently, the code executed during installation is not immutable and can change after this Skill has been reviewed. The risk materializes if the resolved
clawhubpackage or its dependency chain is compromised, replaced, or altered maliciously. The audit did not establish that the current package is malicious; the vulnerability is the absence of dependency pinning and provenance controls.Attack Path
- An attacker compromises the resolved
clawhubnpm package, one of its executable dependencies, or the package publication account. - The attacker publishes a malicious version that includes code executed by the package's CLI or lifecycle behavior.
- A user or automated installation process runs:
shell npx clawhub install values-clarification npxresolves and downloads the unpinned package from the configured registry.- The malicious package code executes with the privileges and environment access of the user running the installation command.
Impact Assessment
Successful exploitation could permit arbitrary code execution under the installing user's account. Depending on that account's privileges and environment, the malicious package could access readable files, environment variables, credentials, project data, and network resources or modify user-owned files.
The direct scope is limited to the permissions of the process invoking
npx; no privile ...[truncated 189 chars]- An attacker compromises the resolved
- Remediation
View remediation
Remediation Suggestions
- Pin
clawhubto a specific reviewed version rather than allowingnpxto resolve an unspecified release:yaml install: "npx --package clawhub@<reviewed-version> clawhub install values-clarification" - Document and enforce the expected npm registry, particularly in automated installation environments.
- Verify package provenance and integrity before execution, using npm provenance information, lockfiles where applicable, and registry integrity metadata.
- Review the pinned package and its transitive dependency tree before approving upgrades.
- Execute installation with a least-privileged account in an isolated environment, without unnecessary credentials or sensitive environment variables.
- Configure automated dependency monitoring and require security review before changing the pinned version.
- Pin
