Tainted flow: 'image_url' from requests.get (line 120, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
image_url = data["output_images"][0] print(f"下载图片: {image_url}") img_resp = requests.get(image_url) img_resp.raise_for_status() image = Image.open(BytesIO(img_resp.content))- Confidence
- 92% confidence
- Finding
- img_resp = requests.get(image_url)
