Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43a81ce88f562b774ca7894bf46905fba96905fba9
Public Swagger UI/API detected at path: /swagger.json - sample paths: GET /coupons GET /coupons/hascoupon GET /coupons/verify GET /language
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1b885ff43a81ce88f562b774ca7894bf46905fba96905fba9
Public Swagger UI/API detected at path: /swagger.json - sample paths: GET /coupons GET /coupons/hascoupon GET /coupons/verify GET /language
Open service 45.154.183.183:443 · astraladvisor.com
2025-12-30 06:09
HTTP/1.1 403 Forbidden Date: Tue, 30 Dec 2025 06:09:11 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 45194596 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: a434ab5082b7cbf4148b340a1ee6a638 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 45.154.183.183:443 · astraladvisor.com
2025-12-22 06:45
HTTP/1.1 403 Forbidden Date: Mon, 22 Dec 2025 06:45:02 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 4833075 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 1b1e57a7d50303ee9b3861d946a8b0a7 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.36.139:443 · www.astraladvisor.com
2025-12-22 06:09
HTTP/1.1 403 Forbidden Date: Mon, 22 Dec 2025 06:09:36 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 1589444 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 80b4377597afba20d9cd671f44b4417f Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 45.154.183.183:443 · astraladvisor.com
2025-12-20 07:18
HTTP/1.1 403 Forbidden Date: Sat, 20 Dec 2025 07:18:07 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 13929080 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: b0826abf781d97b278f52e2ba4f4fdff Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.36.139:443 · www.astraladvisor.com
2025-12-20 06:41
HTTP/1.1 403 Forbidden Date: Sat, 20 Dec 2025 06:41:37 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 2806462 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 4599fd73cf59e86387c435c6d5a14078 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>