GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3ab8874f04c7637f4bebf00e8862a560c896aefcb
GraphQL introspection enabled at /graphql Types: 416 (by kind: ENUM: 44, INPUT_OBJECT: 92, INTERFACE: 24, OBJECT: 251, SCALAR: 5) Operations: - Query: Query | fields: CountryListGraphql, amLabelProvider, amLabelSetting, attributesForm, attributesList - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addProductsToCart, addProductsToWishlist, addSimpleProductsToCart Directives: deprecated, include, skip (total: 3) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3ab8874f04c7637f4bebf00e8862a560c381b0534
GraphQL introspection enabled at /graphql Types: 416 (by kind: ENUM: 44, INPUT_OBJECT: 92, INTERFACE: 24, OBJECT: 251, SCALAR: 5) Operations: - Query: Query | fields: CountryListGraphql, amLabelProvider, amLabelSetting, attributesForm, attributesList - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addProductsToCart, addProductsToWishlist, addSimpleProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa361f7f7b535d6113724cbebaf2452641fcaae4c3f
GraphQL introspection enabled at /graphql Types: 414 (by kind: ENUM: 44, INPUT_OBJECT: 92, INTERFACE: 24, OBJECT: 249, SCALAR: 5) Operations: - Query: Query | fields: CountryListGraphql, amLabelProvider, amLabelSetting, attributesForm, attributesList - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addProductsToCart, addProductsToWishlist, addSimpleProductsToCart Directives: deprecated, include, skip (total: 3)
Open service 2.16.204.135:443 · office.bowmore.com
2026-01-09 23:30
HTTP/1.1 302 Moved Temporarily Content-Type: text/html; charset=UTF-8 Location: https://www.bowmore.com/ X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Content-Encoding: gzip Content-Length: 20 Expires: Fri, 09 Jan 2026 23:31:02 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 09 Jan 2026 23:31:02 GMT Connection: close Set-Cookie: PHPSESSID=h9d2kga3367ouj96msgf49ijne; expires=Sun, 08 Feb 2026 23:31:02 GMT; Max-Age=2592000; path=/; domain=office.bowmore.com; secure; HttpOnly; SameSite=Lax Server-Timing: cdn-cache; desc=MISS Server-Timing: edge; dur=115 Server-Timing: origin; dur=184 Strict-Transport-Security: max-age=86400 Server-Timing: ak_p; desc="1768001462093_34610567_3085313655_29872_11202_168_171_-";dur=1
Open service 2.16.204.93:443 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 302 Moved Temporarily Content-Type: text/html; charset=UTF-8 Location: https://www.bowmore.com/ X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Content-Encoding: gzip Expires: Thu, 08 Jan 2026 13:09:31 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:09:31 GMT Connection: close Set-Cookie: PHPSESSID=h0ecs4819ojsuvt4q7ldpi8dqo; expires=Sat, 07 Feb 2026 13:09:31 GMT; Max-Age=2592000; path=/; domain=office.bowmore.com; secure; HttpOnly; SameSite=Lax Server-Timing: edge; dur=1 Server-Timing: origin; dur=114 Server-Timing: cdn-cache; desc=MISS Strict-Transport-Security: max-age=86400 Server-Timing: ak_p; desc="1767877771455_34610504_237804828_11520_9895_148_160_-";dur=1
Open service 2a02:26f0:3500:18::1724:a297:443 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 302 Moved Temporarily Content-Type: text/html; charset=UTF-8 Location: https://www.bowmore.com/ X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Content-Encoding: gzip Expires: Thu, 08 Jan 2026 13:09:31 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:09:31 GMT Connection: close Set-Cookie: PHPSESSID=n1klt5bn3vt6atnhohub9jm2op; expires=Sat, 07 Feb 2026 13:09:31 GMT; Max-Age=2592000; path=/; domain=office.bowmore.com; secure; HttpOnly; SameSite=Lax Server-Timing: edge; dur=1 Server-Timing: origin; dur=178 Server-Timing: cdn-cache; desc=MISS Strict-Transport-Security: max-age=86400 Server-Timing: ak_p; desc="1767877771615_388276368_2991346851_17811_19454_165_179_-";dur=1
Open service 2a02:26f0:3500:18::1724:a297:80 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://office.bowmore.com/ Expires: Thu, 08 Jan 2026 13:10:12 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:10:12 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767877812821_388276375_2948343985_12_10564_149_0_-";dur=1
Open service 2.16.204.72:80 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://office.bowmore.com/ Expires: Thu, 08 Jan 2026 13:10:11 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:10:11 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767877811626_34610504_237865026_11_8841_17_0_-";dur=1
Open service 2a02:26f0:3500:18::1724:a290:443 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 302 Moved Temporarily Content-Type: text/html; charset=UTF-8 Location: https://www.bowmore.com/ X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Content-Encoding: gzip Expires: Thu, 08 Jan 2026 13:09:30 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:09:30 GMT Connection: close Set-Cookie: PHPSESSID=s888q0qvtkhf7kcudo8qhtq7mq; expires=Sat, 07 Feb 2026 13:09:30 GMT; Max-Age=2592000; path=/; domain=office.bowmore.com; secure; HttpOnly; SameSite=Lax Server-Timing: edge; dur=1 Server-Timing: origin; dur=80 Server-Timing: cdn-cache; desc=MISS Strict-Transport-Security: max-age=86400 Server-Timing: ak_p; desc="1767877770848_388276375_2948234812_8034_8701_6_20_-";dur=1
Open service 2a02:26f0:3500:18::1724:a290:80 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://office.bowmore.com/ Expires: Thu, 08 Jan 2026 13:10:11 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:10:11 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=15 Server-Timing: ak_p; desc="1767877811574_388276368_2991463952_1483_9452_17_0_-";dur=1
Open service 2.16.204.72:443 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 302 Moved Temporarily Content-Type: text/html; charset=UTF-8 Location: https://www.bowmore.com/ X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Content-Encoding: gzip Expires: Thu, 08 Jan 2026 13:09:31 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:09:31 GMT Connection: close Set-Cookie: PHPSESSID=0g6t4cf0no4lqo13felpb63mqn; expires=Sat, 07 Feb 2026 13:09:31 GMT; Max-Age=2592000; path=/; domain=office.bowmore.com; secure; HttpOnly; SameSite=Lax Server-Timing: edge; dur=1 Server-Timing: origin; dur=225 Server-Timing: cdn-cache; desc=MISS Strict-Transport-Security: max-age=86400 Server-Timing: ak_p; desc="1767877771037_34610525_44239235_22649_12704_15_81_-";dur=1
Open service 2.16.204.93:80 · office.bowmore.com
2026-01-08 13:09
HTTP/1.1 301 Moved Permanently Content-Length: 0 Location: https://office.bowmore.com/ Expires: Thu, 08 Jan 2026 13:10:12 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Thu, 08 Jan 2026 13:10:12 GMT Connection: close Server-Timing: cdn-cache; desc=HIT Server-Timing: edge; dur=1 Server-Timing: ak_p; desc="1767877812204_34610525_44295429_11_11753_97_0_-";dur=1
Open service 2.16.204.135:443 · office.bowmore.com
2026-01-02 08:35
HTTP/1.1 302 Moved Temporarily Content-Type: text/html; charset=UTF-8 Location: https://www.bowmore.com/ X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Content-Encoding: gzip Expires: Fri, 02 Jan 2026 08:35:57 GMT Cache-Control: max-age=0, no-cache, no-store Pragma: no-cache Date: Fri, 02 Jan 2026 08:35:57 GMT Connection: close Set-Cookie: PHPSESSID=m5timk0fml41q5d4d707rp28fs; expires=Sun, 01 Feb 2026 08:35:57 GMT; Max-Age=2592000; path=/; domain=office.bowmore.com; secure; HttpOnly; SameSite=Lax Server-Timing: edge; dur=5 Server-Timing: origin; dur=78 Server-Timing: cdn-cache; desc=MISS Strict-Transport-Security: max-age=86400 Server-Timing: ak_p; desc="1767342957612_34610578_2243175286_8305_11869_9_19_-";dur=1