Tainted flow: 'OUTPUT_DIR' from os.environ.get (line 58, credential/environment) → open (file write)
Medium
- Category
- Data Flow
- Content
"""Write report.json, report.md, and last30days.context.md.""" ensure_output_dir() with open(OUTPUT_DIR / "report.json", "w", encoding="utf-8") as f: json.dump(report.to_dict(), f, indent=2, ensure_ascii=False) with open(OUTPUT_DIR / "report.md", "w", encoding="utf-8") as f:- Confidence
- 89% confidence
- Finding
- with open(OUTPUT_DIR / "report.json", "w", encoding="utf-8") as f:
