Tainted flow: 'upload_url' from requests.post (line 135, network input) → requests.put (network output)
Medium
- Category
- Data Flow
- Content
"""Uploads the file content to the registered URL.""" headers = {"Authorization": f"Bearer {token}"} with open(file_path, "rb") as f: response = requests.put(upload_url, headers=headers, data=f) if response.status_code != 201 and response.status_code != 200: console.print(f"[red]File Upload Error:[/red] {response.text}") response.raise_for_status()- Confidence
- 92% confidence
- Finding
- response = requests.put(upload_url, headers=headers, data=f)
