T08 · Insecure Dependencies
- Location
README.md:16- Finding
Unpinned Package Execution in Installation Instructions
- Content
View full analysis
Vulnerability Details
File Location:
README.md:16
Vulnerability Type: Supply-chain exposure through unpinned package execution
Risk Level: MediumVulnerable Code:
bash npx clawhub install yinan-api-integratorTechnical Analysis
The installation command invokes an npm-resolved CLI through
npxwithout specifying an exact, audited version or integrity value. Consequently, the executable resolved when a user follows these instructions may differ from the version originally reviewed.This does not prove that the current package is malicious. However, it creates a supply-chain trust boundary: compromise of the relevant package, registry account, dependency chain, or future release could cause attacker-controlled code to execute during installation. The project does not provide a lockfile, checksum, signature, or documented provenance verification for the executable invoked by this command.
Attack Path
- An attacker compromises the package or publishing account resolved by
npx, or causes an unsafe package version to be selected. - The attacker publishes a release containing malicious CLI or lifecycle code.
- A user follows the installation command from
README.md. npxretrieves and executes the attacker-controlled release.- The malicious code runs with the permissions of the user performing the installation.
Impact Assessment
Successful exploitation could provide arbitrary code execution under the installing user's account. The resulting access could include reading or modifying files available to that user, accessing environment variables and developer credentials, altering the installed Skill, and making network requests. It does not inherently provide administrative privileges unless installation is performed by a privileged account.
- An attacker compromises the package or publishing account resolved by
- Remediation
View remediation
Remediation Suggestions
- Pin the invoked CLI to an exact, previously audited version rather than relying on unconstrained resolution.
- Publish and document expected package provenance, registry, version, and integrity information.
- Use lockfiles where applicable and verify package checksums or signatures before execution.
- Avoid running installation commands with administrative privileges.
- Periodically re-audit pinned releases and their transitive dependencies before updating the documented version.
