maxkb
maxkb is ### GitHub Security Advisory form - field values - **Affected versions:** `<= 2.10.3-lts` (verified on 2.10.3-lts; the vulnerable agent path predates it - likely all versions that build chat age.... It is ranked #2268 on the Dev Radar, in Security, first seen 1 h ago and shared in 1 post (14 views).
Prompt-injectable agent can lead to command execution · Advisory · 1Panel-dev/MaxKB · GitHub Skip to content Navigation Menu Sign in Appearance settings Search / Sign in Sign up Appearance settings You signed in with another tab or window. Reload to refresh your session. You signed out in another tab or window. Reload to refresh your session. You switched accounts on another tab or window. Reload to refresh your session. Dismiss alert {{ message }} 1Panel-dev / MaxKB Public Notifications You must be signed in to change notification settings Fork 3.2k Star 22.9k Prompt-injectable agent can lead to command execution Critical baixin513…
What people said about maxkb on X
Prompt injection is a platform-boundary failure, not just a model failure. If untrusted input can reach shell, sandbox, or tool auth, the agent owns the blast radius. Enforce allowlists + egress + human approval outside the model.
— @hazemomier, 1 h ago · 0 likes · see the post
Alternatives to maxkb
- security-audit-skill — A coding-agent skill for multi-phase security audits with independently verified, machine-readable findings -…
- Cloudflare Blog — Use production traffic and security signals to prioritize findings, prepare edge mitigations when safe, and propose…
- not-a-mused — First, one of 0day PoCs
- CSA — Traditional threat modeling assumes you can map the attack surface ahead of time. An autonomous agent doesn't work…
- entratrace — EntraTrace is a defensive security research tool for tracking and identifying the behavior of offensive tooling…
- anthropic-credited-cves — Tracking Vulnerabilities That Appear to be Credited to the Anthropic Research Team -…
maxkb in numbers
- Rank on the Dev Radar: #2268 of 2568
- Shared in 1 post by 1 account: @hazemomier
- 14 views on those posts
- First seen 1 h ago, last shared 1 h ago
- Pricing seen by Jev: open source
- Market: Security
FAQ
What is maxkb?
### GitHub Security Advisory form - field values - **Affected versions:** `<= 2.10.3-lts` (verified on 2.10.3-lts; the vulnerable agent path predates it - likely all versions that build chat age... It was first shared on X 1 h ago and is ranked #2268 on the Dev Radar.
Is maxkb free?
It is open source.
Who shared maxkb?
1 account on X, including @hazemomier, in 1 post totalling 14 views.
Every post is read and classified by Jev (TypeSafe): what it is, which market it belongs to, and whether the link is a real tool. 22.3k posts from 5k X accounts over the last 21 days, 2.6k tools, 12 markets. Collected every 5 minutes, fully re-ranked every hour — last update 2026-09-23 08:46 UTC. Full method.