Skip to main content
在 Manus 中运行任何 Skill
一键导入
$pwd:

wrdn-code-execution

// Detects bugs where untrusted input reaches a sink that produces code or command execution on the server. Covers command/shell injection, unsafe deserialization, server-side template injection, eval/Function/vm reached by user data, XXE-to-RCE gadgets, and prototype pollution that lands on a code-executing sink. Run on any diff touching subprocess/exec calls, template rendering, deserialization of bytes, XML parsing, or deep-merge of user-controlled objects.

$ git log --oneline --stat
stars:50
forks:3
updated:2026年4月26日 18:41
文件资源管理器
12 个文件
SKILL.md
readonly