Tainted flow: 'url' from os.environ.get (line 113, credential/environment) → requests.get (network output)
Critical
- Category
- Data Flow
- Content
headers = _headers(api_key) _debug_request("GET", url, headers=headers) try: r = requests.get(url, headers=headers, timeout=30) r.raise_for_status() return r.json() except Exception as e:- Confidence
- 91% confidence
- Finding
- r = requests.get(url, headers=headers, timeout=30)
