T08 · Insecure Dependencies
- Location
references/QUICK_START.md:30- Finding
Unpinned Paegents SDK Installation Creates a Supply-Chain Risk
- Content
View full analysis
Vulnerability Details
File Location:
references/QUICK_START.md:30-35
Vulnerability Type: T08: Insecure Dependencies
Risk Level: MediumVulnerable Code
bash # Python pip install paegents # OR TypeScript npm install paegentsTechnical Analysis
Both installation commands resolve the latest package version available at installation time. They do not specify an exact version, verify an integrity hash, use a lockfile, or otherwise ensure that the installed package is the version reviewed alongside this Skill.
The effective implementation can therefore change independently of the audited Skill. Package installation or runtime hooks introduced by a compromised future release could execute with the privileges of the user running the installation. This is particularly sensitive because the SDK operates in a context containing Paegents API credentials and potentially wallet-signing material.
This finding does not establish that the current
paegentspackages are malicious. The vulnerability is the absence of controls that bind installation to a reviewed artifact.Attack Path
- An attacker compromises the package publisher, package registry account, or a transitive dependency.
- The attacker publishes a malicious version under the legitimate
paegentspackage name. - A user follows the documented unpinned
pip install paegentsornpm install paegentscommand. - The package manager resolves and installs the malicious release.
- Malicious installation hooks or runtime code execute in the user's environment.
- The code may read accessible environment variables, alter transaction parameters, intercept locally generated signatures, or perform other actions allowed by the user's process privileges.
Impact Assessment
Successful exploitation could provide code execution with the privileges of the user installing or running the SDK. Depending on the host configuration, exposed ...[truncated 589 chars]
- Remediation
View remediation
Remediation Suggestions
- Pin the SDK to an exact reviewed version consistent with the Skill release, for example:
bash pip install paegents==2.9.1 npm install paegents@2.9.1 --save-exact - Supply Python requirements with hashes and use
pip install --require-hashes. - Commit npm lockfiles and use
npm cirather than unconstrained installation in automated environments. - Verify package provenance, checksums, and publisher identity before installation.
- Run the SDK in an isolated environment with only the minimum required credentials and filesystem access.
- Require an explicit security review before updating the pinned SDK or its transitive dependencies.
- Pin the SDK to an exact reviewed version consistent with the Skill release, for example:
