Tainted flow: 'audio_url' from requests.get (line 107, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
print(f"INFO: Downloading audio stream from Bilibili...", file=sys.stderr) dl_headers = _bili_headers(cookie) dl_headers["Referer"] = f"https://www.bilibili.com/video/{bvid}" r = requests.get(audio_url, headers=dl_headers, proxies=proxies, stream=True, timeout=(15, 300)) r.raise_for_status() with open(m4s_path, "wb") as f: for chunk in r.iter_content(chunk_size=1024 * 64):- Confidence
- 78% confidence
- Finding
- r = requests.get(audio_url, headers=dl_headers, proxies=proxies, stream=True, timeout=(15, 300))
