T08 · Insecure Dependencies
- Location
SKILL.md:22- Finding
Unpinned Global Installation of a Third-Party Package
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md:22
Vulnerability Type:T08: Insecure Dependencies
Risk Level: MediumVulnerable Code:
markdown **Start**: `bun-do start` (install: `bun install -g bun-do`)Technical Analysis
The Skill instructs users or agents to install the
bun-dopackage globally from a package registry without pinning a reviewed version or specifying an integrity hash, trusted registry, or verified publisher. Consequently, the installed artifact can change after the Skill has been audited.Global package installation may also invoke package-controlled installation or lifecycle behavior under the privileges of the user running the command. This is unnecessary for merely communicating with the documented local REST API and increases the supply-chain attack surface.
This finding does not demonstrate that the current
bun-dopackage is malicious. The risk arises because a registry compromise, package-owner compromise, dependency confusion event, or malicious future release could make the documented installation command retrieve unsafe code.Attack Path
- An attacker compromises the package publisher or registry account, takes control of the package name, or causes an unsafe release to be selected.
- The attacker publishes a malicious version of
bun-door one of its transitive dependencies. - A user or agent follows the Skill documentation and runs
bun install -g bun-do. - The package manager retrieves the currently selected unpinned release.
- Malicious package behavior executes during installation or when the globally installed
bun-docommand is subsequently invoked. - The payload operates with the permissions of the installing user and may affect files, processes, credentials, or network resources accessible to that account.
Impact Assessment
Successful exploitation could result in arbitrary code execution with the privileges of the user perfo ...[truncated 437 chars]
- Remediation
View remediation
Remediation Suggestions
- Pin the dependency to a specifically reviewed release, for example:
bash bun install -g bun-do@<reviewed-version> - Document the authoritative package registry, source repository, package publisher, and expected integrity information.
- Verify the package artifact and its transitive dependencies before recommending installation.
- Prefer a lockfile-backed, project-local installation over a global installation where feasible.
- Run the service under a dedicated, unprivileged account or constrained environment with access only to its required data directory and loopback port.
- Avoid running the installation command with elevated privileges.
- Consider documenting an API-only workflow for users who already have a trusted service instance, because the Skill's task-management operations require access to the local API but do not inherently require globally installing a package.
- Pin the dependency to a specifically reviewed release, for example:
