Tainted flow: 'target_url' from requests.get (line 106, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
if target_url.startswith('//'): target_url = 'https:' + target_url resp = requests.get(target_url) body = resp.json().get('body', []) full_text = "\n".join([b.get('content', '') for b in body]) return full_text- Confidence
- 88% confidence
- Finding
- resp = requests.get(target_url)
