Fix Vulnerability

Fix a vm2 sandbox escape vulnerability given a Security Advisory ID (GHSA/CVE). Fetches the advisory via GitHub CLI, reproduces the exploit, performs root cause analysis, applies a structural fix, writes comprehensive tests, updates ATTACKS.md, and red-teams the result. Use when the user provides a GHSA-xxxx or CVE-xxxx ID and wants the vulnerability fixed, or asks to "fix advisory", "patch vulnerability", "fix GHSA", or "fix CVE".

patriksimek 126c800 24.2 KB Updated

File contents

patriksimek/vm2/tree/main/.claude/skills/fix-vulnerability commit 126c8006ce

Frequently asked questions

npx skillmds@latest add patriksimek/fix-vulnerability