Tainted flow: 'parse_result_url' from requests.post (line 183, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
if download_result: parse_result_url = result.get('result', {}).get('parse_result_url') if parse_result_url: parse_response = requests.get(parse_result_url) parse_response.encoding = 'utf-8' result['parse_result'] = parse_response.json() return result- Confidence
- 95% confidence
- Finding
- parse_response = requests.get(parse_result_url)
