Wrdn Code Execution

Detects bugs where untrusted input reaches a sink that produces code or command execution on the server. Covers command/shell injection, unsafe deserialization, server-side template injection, eval/Function/vm reached by user data, XXE-to-RCE gadgets, and prototype pollution that lands on a code-executing sink. Run on any diff touching subprocess/exec calls, template rendering, deserialization of bytes, XML parsing, or deep-merge of user-controlled objects.

Sentry 623f4b0 12 files · 73.6 KB Updated 845 repo stars

File contents

getsentry/warden-skills/tree/main/skills/wrdn-code-execution commit 623f4b0ffb

Frequently asked questions

npx skillmds@latest add getsentry/wrdn-code-execution