Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035493ceed2e939add5db6ee6b986d6c10d9bb608bf44
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/place/remove-assignments
GET /api/article
GET /api/group
GET /api/place
GET /api/place/{placeId}
GET /api/place/{placeId}/stock
POST /api/article/location
POST /api/place/add-assignments
POST /api/place/change-order
POST /api/place/remove-index
POST /api/place/stock/update
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035493ceed2e939add5db6ee6b986d6c10d9b9a2c7f81
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/place/remove-assignments
GET /api/article
GET /api/group
GET /api/place
GET /api/place/{placeId}
GET /api/place/{placeId}/stock
POST /api/article/location
POST /api/place/add-assignments
POST /api/place/change-order
POST /api/place/stock/update
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035493ceed2e939add5db6ee6b986d6c10d9b5112e461
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/place/remove-assignments
GET /api/article
GET /api/group
GET /api/place
GET /api/place/{placeId}
POST /api/article/location
POST /api/place/add-assignments
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035493ceed2e939add5db6ee6b986d6c10d9b12847d37
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/place/remove-assignments
GET /api/article
GET /api/group
GET /api/place
GET /api/place/{placeId}
POST /api/place/add-assignments
Severity: info
Fingerprint: 5733ddf49ff49cd1aad035498c626b3ef1001a04add6aaf92fb7184c5bd92637
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
DELETE /api/place/remove-assignment
GET /api/article
GET /api/group
GET /api/place
GET /api/place/{placeId}
POST /api/place/add-assignment
Open service 20.105.232.38:443 · item-locator-api.dev.doka.com
2026-01-23 03:14
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Fri, 23 Jan 2026 03:15:29 GMT Location: /swagger x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000 Request-Context: appId=cid-v1:df628448-2503-4452-8578-75b9e8ea2ddf
Open service 20.105.232.38:443 · item-locator-api.dev.doka.com
2026-01-09 15:37
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Fri, 09 Jan 2026 15:38:11 GMT Location: /swagger x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000 Request-Context: appId=cid-v1:df628448-2503-4452-8578-75b9e8ea2ddf
Open service 20.105.232.38:443 · item-locator-api.dev.doka.com
2026-01-02 11:57
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Fri, 02 Jan 2026 11:57:43 GMT Location: /swagger x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000 Request-Context: appId=cid-v1:df628448-2503-4452-8578-75b9e8ea2ddf
Open service 20.105.232.38:443 · item-locator-api.dev.doka.com
2025-12-22 19:59
HTTP/1.1 302 Found Content-Length: 0 Connection: close Date: Mon, 22 Dec 2025 19:59:33 GMT Location: /swagger x-ms-middleware-request-id: 00000000-0000-0000-0000-000000000000 Request-Context: appId=cid-v1:df628448-2503-4452-8578-75b9e8ea2ddf