os.system() or os exec-family call
High
- Category
- Dangerous Code Execution
- Content
from lxml import etree except ImportError: print("❌ 依赖缺失,正在安装 python-docx lxml ...") os.system(f"{sys.executable} -m pip install python-docx lxml -q") from docx import Document from docx.opc.constants import RELATIONSHIP_TYPE as RT from docx.oxml.ns import qn- Confidence
- 97% confidence
- Finding
- os.system(f"{sys.executable} -m pip install python-docx lxml -q")
