nginx 1.20.1
tcp/443
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Additionally the GIT credentials are present and could give unauthorized access to source code repository of private projects.
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884029ffc42c109f777e1
[init] defaultBranch = none [fetch] recurseSubmodules = false [transfer] bundleURI = true [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:sFNYdHro7szjzhWkZXUt@git.zhongbiao001.com/front/lz-official.git fetch = +refs/heads/*:refs/remotes/origin/* [lfs] repositoryformatversion = 0
Severity: critical
Fingerprint: 2580fa947178c88c8f88f4f64b143e4f192660cba91884029ffc42c14428f47b
[init] defaultBranch = none [fetch] recurseSubmodules = false [transfer] bundleURI = true [core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = https://gitlab-ci-token:3jtkgsmKNEM9yyBbvjRo@git.zhongbiao001.com/front/lz-official.git fetch = +refs/heads/*:refs/remotes/origin/* [lfs] repositoryformatversion = 0
Open service 39.96.171.41:443 ยท oa.lzjs16.com
2026-01-12 03:36
HTTP/1.1 302 Server: nginx/1.20.1 Date: Mon, 12 Jan 2026 03:36:03 GMT Content-Type: text/html;charset=UTF-8 Content-Length: 0 Connection: close Location: https://oa.lzjs16.com/seeyon/index.jsp