Baracchino-Della-Scuola / Bot

Use of both safe and unsafe HTTP methods for a view PY-S6007
Security
Major
4 months ago2 years old
Allowing both safe and unsafe methods for a view is unsecure
 8app = Flask("ghosthooks")
 9
10
11@app.route("/receive", methods=["GET", "POST"])12def receive_hook():
13    data = json.loads(request.data)
14    webhook = DiscordWebhook(url=os.environ["WEBHOOK"])