Tainted flow: 'img_data' from requests.get (line 82, network input) → requests.post (network output)
Medium
- Category
- Data Flow
- Content
} content_type = content_type_map.get(ext, "image/jpeg") resp = requests.post( "https://open.feishu.cn/open-apis/im/v1/images", headers={"Authorization": f"Bearer {token}"}, data={"image_type": "message"},- Confidence
- 94% confidence
- Finding
- resp = requests.post( "https://open.feishu.cn/open-apis/im/v1/images", headers={"Authorization": f"Bearer {token}"}, data={"image_type": "message"}, files={"image":
