os.system() or os exec-family call
High
- Category
- Dangerous Code Execution
- Content
os.environ["SERPER_API_KEY"] = serper_key os.environ["DEEPSEEK_API_KEY"] = deepseek_key os.chdir(BASE_DIR) # 确保工作目录正确 os.system(f"python {BASE_DIR / 'run.py'} --preview") if __name__ == "__main__":- Confidence
- 86% confidence
- Finding
- os.system(f"python {BASE_DIR / 'run.py'} --preview")
