Tainted flow: 'upload_url' from requests.post (line 137, network input) → requests.put (network output)
Medium
- Category
- Data Flow
- Content
print(f"Uploading {file_path.name}...") with open(file_path, 'rb') as f: headers_put = {"Content-Type": content_type} resp_put = requests.put(upload_url, data=f, headers=headers_put) resp_put.raise_for_status() print(f"Upload successful. File ID: {file_id}")- Confidence
- 95% confidence
- Finding
- resp_put = requests.put(upload_url, data=f, headers=headers_put)
