Tainted flow: 'url' from requests.get (line 83, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
url = f"{BASE_URL}/files/{file_id}/{name}" params = {"download": "1", "hash": session_hash} with requests.get(url, params=params, stream=True) as r: r.raise_for_status() with open(local_path, "wb") as f: for chunk in r.iter_content(chunk_size=8192):- Confidence
- 72% confidence
- Finding
- with requests.get(url, params=params, stream=True) as r:
