GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62337d3d62337d3d62337d3d62337d3d62337d3d6
GraphQL introspection enabled at /api/graphql
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62892e1b8f03a4e5cc39b99820103db4c7c978074
GraphQL introspection enabled at /api/graphql Types: 769 (by kind: ENUM: 2, INPUT_OBJECT: 278, INTERFACE: 1, OBJECT: 482, SCALAR: 6) Operations: - Query: Query | fields: categorizedExerciseResult, categorizedExerciseResults, node, skill, skills - Mutation: Mutation | fields: createCategorizedExerciseResult, deleteCategorizedExerciseResult, deleteSkill, updateCategorizedExerciseResult, updateSkill Directives: deprecated, include, skip (total: 3)
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07dfefd8ccdfefd8ccdfefd8ccdfefd8ccdfefd8cc
Symfony profiler enabled: https://chamilo2.ofp1.fr/_profiler/empty/search/results
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e0711ca869311ca869311ca869311ca869311ca8693
Symfony profiler enabled: https://www.chamilo2.ofp1.fr/_profiler/empty/search/results
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62892e1b8f03a4e5cc39b99820103db4c7c978074
GraphQL introspection enabled at /api/graphql Types: 769 (by kind: ENUM: 2, INPUT_OBJECT: 278, INTERFACE: 1, OBJECT: 482, SCALAR: 6) Operations: - Query: Query | fields: categorizedExerciseResult, categorizedExerciseResults, node, skill, skills - Mutation: Mutation | fields: createCategorizedExerciseResult, deleteCategorizedExerciseResult, deleteSkill, updateCategorizedExerciseResult, updateSkill Directives: deprecated, include, skip (total: 3)