Tainted flow: 'upload_url' from requests.post (line 68, network input) → requests.put (network output)
Medium
- Category
- Data Flow
- Content
} with open(file_path, "rb") as f: resp = requests.put(upload_url, headers=oss_headers, data=f, timeout=120) if resp.status_code not in (200, 201): raise RuntimeError(f"OSS upload failed: {resp.status_code}, {resp.text}")- Confidence
- 82% confidence
- Finding
- resp = requests.put(upload_url, headers=oss_headers, data=f, timeout=120)
