cxcscmu/druid-js-vulnerability
Patching Apache Druid JavaScript injection vulnerability (CVE-2021-25646). Use this skill when fixing Druid's JavaScript execution bypass where empty JSON keys override @JacksonInject JavaScriptConfig to enable JavaScript execution despite being disabled server-wide.
npx skills add https://github.com/cxcscmu/SkillLearnBench --skill druid-js-vulnerability
Take cxcscmu/druid-js-vulnerability from the repository into ~/.claude/skills for personal
use, or into .claude/skills inside a project.
The agent identifies a skill by the name field in its header. Two skills with the
same name cannot sit side by side — one of them will be ignored.