Tainted flow: 'url' from requests.post (line 99, network input) → requests.get (network output)
Medium
- Category
- Data Flow
- Content
if r.status_code == 200: url = r.json().get('render_url') if url: img = requests.get(url, timeout=30) if img.status_code == 200: return {"url": url, "data": img.content} except Exception as e:- Confidence
- 97% confidence
- Finding
- img = requests.get(url, timeout=30)
