Tainted flow: 'FEISHU_WEBHOOK_URL' from os.environ.get (line 52, credential/environment) → requests.post (network output)
Critical
- Category
- Data Flow
- Content
} } response = requests.post( FEISHU_WEBHOOK_URL, json=content, headers={"Content-Type": "application/json"},- Confidence
- 98% confidence
- Finding
- response = requests.post( FEISHU_WEBHOOK_URL, json=content, headers={"Content-Type": "application/json"}, timeout=30 )
