Kestrel
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d60825f568bc040c62466d9b6702640aaed07a73a83
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths:
GET /api/v1/ApiInfo/Version
GET /api/v1/ApiInfo/headers
GET /api/v1/ApiInfo/user
GET /api/v1/Exports/{exportId}
GET /api/v1/reporting/applicantreport/{id}
GET /api/v1/reporting/applicantreport/{id}/export
GET /api/v1/reporting/customformreport/{id}
GET /api/v1/reporting/customformreport/{id}/export
GET /api/v1/reporting/i9report/{id}
GET /api/v1/reporting/i9report/{id}/export
GET /api/v1/reporting/w4report/{id}
GET /api/v1/reporting/w4report/{id}/export
Open service 2.17.197.186:443 · app-reporting.test.ableteams.com
2026-01-23 12:06
HTTP/1.1 404 Not Found Content-Length: 0 Server: Kestrel Expires: Fri, 23 Jan 2026 12:06:29 GMT Cache-Control: max-age=0, no-cache Pragma: no-cache Date: Fri, 23 Jan 2026 12:06:29 GMT Connection: close
Open service 2.17.197.186:443 · app-reporting.test.ableteams.com
2026-01-09 04:31
HTTP/1.1 404 Not Found Content-Length: 0 Server: Kestrel Expires: Fri, 09 Jan 2026 04:31:26 GMT Cache-Control: max-age=0, no-cache Pragma: no-cache Date: Fri, 09 Jan 2026 04:31:26 GMT Connection: close
Open service 2.17.197.186:443 · app-reporting.test.ableteams.com
2026-01-02 04:55
HTTP/1.1 404 Not Found Content-Length: 0 Server: Kestrel Expires: Fri, 02 Jan 2026 04:55:27 GMT Cache-Control: max-age=0, no-cache Pragma: no-cache Date: Fri, 02 Jan 2026 04:55:27 GMT Connection: close
Open service 2.17.197.186:443 · app-reporting.test.ableteams.com
2025-12-26 11:52
HTTP/1.1 404 Not Found Content-Length: 0 Server: Kestrel Expires: Fri, 26 Dec 2025 11:52:58 GMT Cache-Control: max-age=0, no-cache Pragma: no-cache Date: Fri, 26 Dec 2025 11:52:58 GMT Connection: close
Open service 2.17.197.186:443 · app-reporting.test.ableteams.com
2025-12-22 10:37
HTTP/1.1 404 Not Found Content-Length: 0 Server: Kestrel Expires: Mon, 22 Dec 2025 10:37:43 GMT Cache-Control: max-age=0, no-cache Pragma: no-cache Date: Mon, 22 Dec 2025 10:37:43 GMT Connection: close