Tainted flow: 'image_url' from requests.post (line 275, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
resp = requests.post(url, headers=_headers(api_key), json=payload, timeout=60) resp.raise_for_status() image_url = resp.json()["data"][0]["url"] return requests.get(image_url, timeout=60).content def submit_video_task(base_url: str, api_key: str, model: str,- Confidence
- 94% confidence
- Finding
- return requests.get(image_url, timeout=60).content
