The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Additionally the GIT credentials are present and could give unauthorized access to source code repository of private projects.
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884029ffc42c179c3016f
[init] defaultBranch = none [fetch] recurseSubmodules = false [transfer] bundleURI = true [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:glcbt-66_aiqKeZsGUaxsJxKq9xup@gitlab.com/buildx-custom-apps/project-playbaddy/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/* [lfs] repositoryformatversion = 0
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884029ffc42c1d2f3b2a9
[init] defaultBranch = none [fetch] recurseSubmodules = false [transfer] bundleURI = true [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:64_ix5zrJZbnaGRqT2N1jnQ@gitlab.com/buildx-custom-apps/project-playbaddy/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/* [lfs] repositoryformatversion = 0
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884022e566c81b5bc55c3
[init] defaultBranch = none [fetch] recurseSubmodules = false [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:5MbhWyfkV88R4h_s9czN@git-us-east1-d.ci-gateway.int.gprd.gitlab.net:8989/buildx-custom-apps/project-playbaddy/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/*
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522923b3e6c
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab.com/level-up-zone/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Additionally the GIT credentials are present and could give unauthorized access to source code repository of private projects.
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884029ffc42c179c3016f
[init] defaultBranch = none [fetch] recurseSubmodules = false [transfer] bundleURI = true [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:glcbt-66_aiqKeZsGUaxsJxKq9xup@gitlab.com/buildx-custom-apps/project-playbaddy/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/* [lfs] repositoryformatversion = 0
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884029ffc42c1d2f3b2a9
[init] defaultBranch = none [fetch] recurseSubmodules = false [transfer] bundleURI = true [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:64_ix5zrJZbnaGRqT2N1jnQ@gitlab.com/buildx-custom-apps/project-playbaddy/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/* [lfs] repositoryformatversion = 0
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884022e566c81b5bc55c3
[init] defaultBranch = none [fetch] recurseSubmodules = false [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:5MbhWyfkV88R4h_s9czN@git-us-east1-d.ci-gateway.int.gprd.gitlab.net:8989/buildx-custom-apps/project-playbaddy/level-up-website.git fetch = +refs/heads/*:refs/remotes/origin/*