The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e0795c053fd95c053fd95c053fd95c053fd95c053fd
Symfony profiler enabled: https://api.expopolis.com/_profiler/empty/search/results