Tainted flow: 'LOG_PATH' from os.environ.get (line 15, credential/environment) → open (file write)
Medium
- Category
- Data Flow
- Content
error: Optional[str] = None, ) -> None: try: with open(LOG_PATH, "a", encoding="utf-8") as f: f.write("\n" + "=" * 60 + "\n") f.write(f"[{datetime.now().isoformat()}] API request\n") f.write("-" * 40 + "\n")- Confidence
- 88% confidence
- Finding
- with open(LOG_PATH, "a", encoding="utf-8") as f:
