Tainted flow: 'LOG_FILE' from os.environ.get (line 21, credential/environment) → open (file write)
Medium
- Category
- Data Flow
- Content
} if extra: entry["metadata"]["extra"] = extra with open(LOG_FILE, "a", encoding="utf-8") as f: f.write(json.dumps(entry, ensure_ascii=False) + "\n") return entry- Confidence
- 90% confidence
- Finding
- with open(LOG_FILE, "a", encoding="utf-8") as f:
