Detected generic-api-key: Detected a Generic API Key, potentially exposing access to various services and sensitive operations
Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
gitleaks
Detected generic-api-key: Detected a Generic API Key, potentially exposing access to various services and sensitive operations
Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
gitleaks
Detected generic-api-key: Detected a Generic API Key, potentially exposing access to various services and sensitive operations
Detected a Generic API Key, potentially exposing access to various services and sensitive operations.
gitleaks
lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files
grypeCVE-2026-41066EPSS 0.3%
subprocess invoked through the shell (shell=True) or with a command string that is interpolated/concatenated/.split() instead of a fixed argv list — command injection risk. Pass a literal argv list an
subprocess invoked through the shell (shell=True) or with a command string that is interpolated/concatenated/.split() instead of a fixed argv list — command injection risk. Pass a literal argv list and shell=False. (First-party socbox; Apache-2.0.)
semgrepskills/nature-paper-to-patent/scripts/disclosure/mermaid_render.py:118