T09 · Insecure Skill Coding Practices
- Location
cli.ts:69- Finding
Arbitrary Command Execution Through Shell Argument Injection
- Content
View full analysis
/tmp/persona-command-output #' ``` 3. Node places the payload in `process.argv`. 4. The CLI joins the arguments and constructs a command equivalent to: ```bash node --experimental-strip-types /path/to/mode-switcher.ts text; id > /tmp/persona-command-output # ``` 5. The shell executes both the expected Node process and the injected command. ### Impact Assessment Successful exploitation provides arbitrary command execution with the operating-system privileges of the user running the Skill. Depending on that account’s permissions, an attacker could: - Re ...[truncated 499 chars]- Remediation
View remediation
