Context-Inappropriate Capability
Medium
- Confidence
- 96% confidence
- Finding
- The URL builder explicitly permits absolute http/https paths, which turns this script into a general outbound network client rather than a constrained PDB/database retriever. In an agent setting, this can be abused for SSRF-style access to unintended services, data exfiltration to attacker-controlled endpoints, or reaching internal/metadata services if the runtime has network access.
