Tainted flow: 'image_url' from requests.post (line 194, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
def download_image(image_url, output_path): """下载图片""" try: response = requests.get(image_url, timeout=120) response.raise_for_status() output_path.parent.mkdir(parents=True, exist_ok=True)- Confidence
- 93% confidence
- Finding
- response = requests.get(image_url, timeout=120)
