The Prometheus server is public.
This could leak in infrastructure details.
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c020562453e6078e4f4dca8cee0939e
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] Block profile exposed - potential info leak - /debug/pprof/block [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Thread creation profile exposed - /debug/pprof/threadcreate [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c0205623bd4d76fb6346053a26ab380
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Block profile exposed - potential info leak - /debug/pprof/block [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Thread creation profile exposed - /debug/pprof/threadcreate [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c0205626582e5dec7399aec11e8dcf0
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Block profile exposed - potential info leak - /debug/pprof/block [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Thread creation profile exposed - /debug/pprof/threadcreate [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c0205624f2dee16bc01bcdc0a4918ea
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] Thread creation profile exposed - /debug/pprof/threadcreate [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [medium] Block profile exposed - potential info leak - /debug/pprof/block [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config
Open service 51.175.210.222:443 · pr.0x.no
2026-01-08 22:38
HTTP/1.1 302 Found Alt-Svc: h3=":443"; ma=2592000 Content-Length: 29 Content-Type: text/html; charset=utf-8 Date: Thu, 08 Jan 2026 22:39:31 GMT Location: /query Connection: close <a href="/query">Found</a>.
Open service 51.175.210.222:443 · pr.0x.no
2026-01-01 21:14
HTTP/1.1 302 Found Alt-Svc: h3=":443"; ma=2592000 Content-Length: 29 Content-Type: text/html; charset=utf-8 Date: Thu, 01 Jan 2026 21:14:23 GMT Location: /query Connection: close <a href="/query">Found</a>.