Tainted flow: 'image_url' from requests.post (line 191, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
filename = f"{timestamp}_{safe_prompt}.png" filepath = os.path.join(output_dir, filename) img_response = requests.get(image_url, timeout=60) img_response.raise_for_status() with open(filepath, "wb") as f: f.write(img_response.content)- Confidence
- 89% confidence
- Finding
- img_response = requests.get(image_url, timeout=60)
