Tainted flow: 'grobid_url' from os.getenv (line 247, credential/environment) → requests.post (network output)
Critical
- Category
- Data Flow
- Content
'consolidateCitations': '1' } # Set timeout to 5 minutes response = requests.post(grobid_url, files=files, data=data, timeout=300) print(f"Grobid response status code: {response.status_code}")- Confidence
- 88% confidence
- Finding
- response = requests.post(grobid_url, files=files, data=data, timeout=300)
