GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa32b8933be03a9be6ed348e494ac613c66749665f7
GraphQL introspection enabled at /graphql Types: 511 (by kind: ENUM: 48, INPUT_OBJECT: 122, INTERFACE: 26, OBJECT: 310, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, blogAuthor, blogCategories - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa325c869c7d285cff5c33a4cab3c81156ba06f86fe
GraphQL introspection enabled at /graphql Types: 398 (by kind: ENUM: 28, INPUT_OBJECT: 94, INTERFACE: 20, OBJECT: 251, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa325c869c7d285cff5c33a4cab3c81156be8cdbbd3
GraphQL introspection enabled at /graphql Types: 398 (by kind: ENUM: 28, INPUT_OBJECT: 94, INTERFACE: 20, OBJECT: 251, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2f8cbe7e2
GraphQL introspection enabled at /graphql/api
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2890e560c23410d50ce49a5ca3457327038914862
GraphQL introspection enabled at /graphql/api Types: 398 (by kind: ENUM: 28, INPUT_OBJECT: 94, INTERFACE: 20, OBJECT: 251, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Open service 52.222.136.64:443 · dev.nirvanabeads.com
2026-01-09 05:30
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Accept-Ranges: bytes Access-Control-Allow-Credentials: true Access-Control-Allow-Origin: * Cache-Control: max-age=0, no-cache, must-revalidate, no-store Content-Security-Policy: upgrade-insecure-requests;
Open service 52.222.136.64:443 · dev.nirvanabeads.com
2026-01-02 11:35
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Accept-Ranges: bytes Access-Control-Allow-Credentials: true Access-Control-Allow-Origin: * Cache-Control: max-age=0, no-cache, must-revalidate, no-store Content-Security-Policy: upgrade-insecure-requests;
Open service 52.222.136.64:443 · dev.nirvanabeads.com
2025-12-30 14:09
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Accept-Ranges: bytes Access-Control-Allow-Credentials: true Access-Control-Allow-Origin: * Cache-Control: max-age=0, no-cache, must-revalidate, no-store Content-Security-Policy: upgrade-insecure-requests;
Open service 52.222.136.64:443 · dev.nirvanabeads.com
2025-12-22 11:10
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Accept-Ranges: bytes Access-Control-Allow-Credentials: true Access-Control-Allow-Origin: * Cache-Control: max-age=0, no-cache, must-revalidate, no-store Content-Security-Policy: upgrade-insecure-requests;
Open service 52.222.136.64:443 · dev.nirvanabeads.com
2025-12-21 04:51
HTTP/1.1 200 OK Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Accept-Ranges: bytes Access-Control-Allow-Credentials: true Access-Control-Allow-Origin: * Cache-Control: max-age=0, no-cache, must-revalidate, no-store Content-Security-Policy: upgrade-insecure-requests;