Missing User Warnings
Medium
- Confidence
- 93% confidence
- Finding
- The tool opens output paths derived from a user-supplied prefix in plain 'wb' mode, which will silently truncate any existing matching files. In an agent or automation context, a crafted or mistaken prefix can overwrite important local files in the current working directory or at arbitrary writable paths, causing data loss or corruption.
