Tainted flow: 'PUBLIC_KEY_URL' from os.getenv (line 56, credential/environment) → requests.get (network output)
Critical
- Category
- Data Flow
- Content
headers["referrer"] = f"{BASE_URL}/" try: response = requests.get( PUBLIC_KEY_URL, headers=headers, timeout=10- Confidence
- 96% confidence
- Finding
- response = requests.get( PUBLIC_KEY_URL, headers=headers, timeout=10 )
