Tainted flow: 'api_url' from os.environ.get (line 35, credential/environment) → requests.post (network output)
Critical
- Category
- Data Flow
- Content
if semantic: payload["semantic_analysis"] = "fast" response = requests.post( f"{api_url}/verify/text", json=payload, headers=headers,- Confidence
- 91% confidence
- Finding
- response = requests.post( f"{api_url}/verify/text", json=payload, headers=headers, timeout=30, )
