The Prometheus server is public.
This could leak in infrastructure details.
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c020562f5aea732670ab47b6a20b0b6
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [medium] Thread creation profile exposed - /debug/pprof/threadcreate [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Block profile exposed - potential info leak - /debug/pprof/block [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c0205626582e5de5eda9c34e9addbba
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] Block profile exposed - potential info leak - /debug/pprof/block [medium] Thread creation profile exposed - /debug/pprof/threadcreate [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config
Severity: high
Fingerprint: d2fc3f24e5d58bc65ab0455376a6d19b4c020562345893d849a6138ecff30eee
Prometheus instance exposed with 13 findings [high] Query API exposed - sensitive data accessible - /api/v1/query [high] Targets API exposed - infrastructure information leaked - /api/v1/targets [medium] Heap dump exposed - potential DoS - /debug/pprof/heap [medium] Mutex profile exposed - potential info leak - /debug/pprof/mutex [medium] Execution trace exposed - potential DoS - /debug/pprof/trace?seconds=1 [medium] Goroutine dump exposed - DoS and info leak - /debug/pprof/goroutine [medium] Memory allocation dump exposed - potential DoS - /debug/pprof/allocs [medium] CPU profile exposed - potential DoS - /debug/pprof/profile?seconds=1 [medium] Thread creation profile exposed - /debug/pprof/threadcreate [medium] Command line exposed - startup arguments leaked - /debug/pprof/cmdline [medium] Block profile exposed - potential info leak - /debug/pprof/block [low] Metrics endpoint exposed - /metrics [low] Config API exposed - configuration details accessible - /api/v1/status/config