nginx
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4b3d285e1af38b627d7e5a0345ddc7398045119d57
Public Swagger UI/API detected at path: /v3/api-docs - sample paths:
DELETE /alert/receiver/batch
DELETE /api/batch
DELETE /dashboardUser/batch
DELETE /detail/batchDelete
DELETE /discovery/{discoveryId}
DELETE /field/batchDelete
DELETE /mock/batchDelete
DELETE /mock/{id}
DELETE /operation-record/log/clean/{timePoint}
DELETE /plugin-handle/batch
DELETE /plugin/batch
DELETE /proxy-selector/batch
DELETE /resource/batch
DELETE /role/batch
DELETE /rule/batch
DELETE /selector/batch
DELETE /shenyu-dict/batch
DELETE /tag-relation/batchDelete
DELETE /tag/batchDelete
GET /alert/receiver
GET /alert/receiver/{id}
GET /api
GET /api/{id}
GET /apidoc/getDocMenus
GET /appAuth/detail
GET /appAuth/detailPath
GET /appAuth/findPageByQuery
GET /appAuth/updateSk
GET /dashboardUser
GET /dashboardUser/check/password
GET /dashboardUser/{id}
GET /data-permission/rules
GET /data-permission/selector
GET /detail/findPageByQuery
GET /discovery
GET /discovery/typeEnums
GET /field/findPageByQuery
GET /meta-data/findAll
GET /meta-data/findAllGroup
GET /meta-data/queryList
GET /meta-data/{id}
GET /mock/findPageByQuery
GET /mock/{apiId}
GET /operation-record/log/list
GET /permission/getUserPermissionByToken
GET /platform/enum
GET /platform/login
GET /plugin
GET /plugin-handle
GET /plugin-handle/all/{pluginId}/{type}
GET /plugin-handle/{id}
GET /plugin/all
GET /plugin/snapshot/active
GET /plugin/{id}
GET /proxy-selector
GET /resource
GET /resource/button
GET /resource/menu
GET /resource/{id}
GET /role
GET /role/getAllRoles
GET /role/{id}
GET /rule
GET /rule/{id}
GET /selector
GET /selector/{id}
GET /shenyu-dict
GET /shenyu-dict/all/{type}
GET /shenyu-dict/{id}
GET /tag-relation/tagId/{tagId}
GET /tag/id/{id}
GET /tag/name/{name}
GET /tag/parentTagId/{parentTagId}
GET /tag/queryRootTag
POST /alert/receiver/test
POST /alert/report
POST /appAuth/apply
POST /appAuth/batchDelete
POST /appAuth/batchEnabled
POST /appAuth/list/search
POST /appAuth/list/search/adaptor
POST /appAuth/syncData
POST /appAuth/updateDetail
POST /appAuth/updateDetailPath
POST /data-permission/rule
POST /detail/insertOrUpdate
POST /discovery-upstream
POST /discovery-upstream/batch
POST /discovery/insertOrUpdate
POST /field/insertOrUpdate
POST /meta-data/batchDeleted
POST /meta-data/batchEnabled
POST /meta-data/createOrUpdate
POST /meta-data/syncData
POST /mock/insertOrUpdate
POST /operation-record/log/list/search
POST /operation-record/log/list/search/adaptor
POST /plugin/enabled
POST /plugin/list/search
POST /plugin/list/search/adaptor
POST /plugin/syncPluginAll
POST /proxy-selector/addProxySelector
POST /proxy-selector/binding
POST /rule/list/search
POST /rule/list/search/adaptor
POST /sandbox/proxyGateway
POST /selector/list/search
POST /selector/list/search/adaptor
POST /shenyu-client/offline
POST /shenyu-client/register-apiDoc
POST /shenyu-client/register-discoveryConfig
POST /shenyu-client/register-metadata
POST /shenyu-client/register-uri
POST /shenyu-dict/batchEnabled
POST /tag
PUT /dashboardUser/modify-password/{id}
PUT /discovery-upstream/{discoveryHandlerId}
PUT /plugin/createPluginResource/{id}
PUT /plugin/syncPluginData/{id}
PUT /proxy-selector/fetch/{discoveryHandlerId}
PUT /proxy-selector/{id}
PUT /tag-relation/id/{id}
Open service 139.159.151.90:443 ยท adminpre.callzone.com.cn
2026-01-23 03:00
HTTP/1.1 502 Bad Gateway Server: nginx Date: Fri, 23 Jan 2026 03:00:08 GMT Content-Type: text/html Content-Length: 150 Connection: close Page title: 502 Bad Gateway <html> <head><title>502 Bad Gateway</title></head> <body> <center><h1>502 Bad Gateway</h1></center> <hr><center>nginx</center> </body> </html>