nginx 1.14.0
tcp/443
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1bf890109bf890109bf890109bf890109bf890109bf890109
Public Swagger UI/API detected at path: /api-docs/swagger.json
Open service 3.216.42.100:443 · my.shareapparent.com
2026-01-23 11:27
HTTP/1.1 302 Found Server: nginx/1.14.0 (Ubuntu) Date: Fri, 23 Jan 2026 11:27:29 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close X-Powered-By: Express Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS, PUT, PATCH Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept Location: /v2/app Vary: Accept, Accept-Encoding Set-Cookie: connect.sid=s%3AaNRVsgArWbVvrfjuUS-szr75RajmrbUT.w0eJgq7gOjpGkxbmfTIj%2BQtrMOBnrWgMFv51g%2BM54jU; Path=/; HttpOnly Found. Redirecting to /v2/app
Open service 3.216.42.100:443 · my.shareapparent.com
2026-01-09 20:32
HTTP/1.1 302 Found Server: nginx/1.14.0 (Ubuntu) Date: Fri, 09 Jan 2026 20:32:32 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close X-Powered-By: Express Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS, PUT, PATCH Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept Location: /v2/app Vary: Accept, Accept-Encoding Set-Cookie: connect.sid=s%3AVdxWKnFBm7nFarXjcK1kL-hVFwN-QaNo.RI2Vtg5m1pw4WGb%2F4BZUMgQUTLFucZVmwIDg3FbvzDs; Path=/; HttpOnly Found. Redirecting to /v2/app
Open service 3.216.42.100:443 · my.shareapparent.com
2026-01-02 17:13
HTTP/1.1 302 Found Server: nginx/1.14.0 (Ubuntu) Date: Fri, 02 Jan 2026 17:13:50 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close X-Powered-By: Express Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS, PUT, PATCH Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept Location: /v2/app Vary: Accept, Accept-Encoding Set-Cookie: connect.sid=s%3ArtO_WJmopr4AWatUj2byTui7Ptv72x3F.DXFeXm3EjXXYmAg%2FNysA%2Bzr3HWMdgVDhss5zTm5Jo64; Path=/; HttpOnly Found. Redirecting to /v2/app
Open service 3.216.42.100:443 · my.shareapparent.com
2025-12-23 01:43
HTTP/1.1 302 Found Server: nginx/1.14.0 (Ubuntu) Date: Tue, 23 Dec 2025 01:43:39 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 29 Connection: close X-Powered-By: Express Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS, PUT, PATCH Access-Control-Allow-Headers: Origin, X-Requested-With, Content-Type, Accept Location: /v2/app Vary: Accept, Accept-Encoding Set-Cookie: connect.sid=s%3A78B_GRK4fe6a9iIXcwXvVYUM2QQkwrgl.GjzS1zDFHYAtnrw%2FUzhpFJ3XB3T3NmAD1cDP8gj3bOk; Path=/; HttpOnly Found. Redirecting to /v2/app