saif-deepsource / apkleaks

Errors detected in .deepsource.toml.

Audit required: Use of an insecure method method from urllib detected BAN-B310
Security
Major
1 occurrence in this check
Audit url open for permitted schemes. Allowing use of file:/ or custom schemes is often unexpected.
 33
 34	def dependencies(self):
 35		exter = "https://github.com/skylot/jadx/releases/download/v1.2.0/jadx-1.2.0.zip"
 36		with closing(urlopen(exter)) as jadx: 37			with ZipFile(io.BytesIO(jadx.read())) as zfile:
 38				zfile.extractall(self.main_dir + "/../jadx")
 39		os.chmod(self.jadx, 33268)