Tainted flow: 'download_url' from requests.get (line 278, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
if not silent: print(f"⬇️ 正在下载新版本 skill: {download_url}") response = requests.get(download_url, timeout=90) if response.status_code != 200: if not silent: print(f"❌ 下载更新包失败: HTTP {response.status_code}")- Confidence
- 93% confidence
- Finding
- response = requests.get(download_url, timeout=90)
