Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec812026947f332fac4b22b7a3cbae6665b101809b
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
GET /about_box
GET /admin
GET /admin/
GET /admin/aile/stats
GET /admin/config/dashboard
GET /admin/config/list
GET /admin/config/pageAdd
GET /admin/config/pageUpdate
GET /admin/device/dashboard
GET /admin/device/list
GET /admin/feedback/dashboard
GET /admin/feedback/list
GET /admin/files/dashboard
GET /admin/index
GET /admin/index.html
GET /admin/limiting/dashboard
GET /admin/login
GET /admin/logout
GET /admin/payment/dashboard
GET /admin/payment/list
GET /admin/redeemcode/dashboard
GET /app/anyHtml
GET /app/anyPage
GET /app/help
GET /app/home
GET /app/mdHtml
GET /app/privacy
GET /code
GET /common/kaptcha
GET /english/privacy
GET /english_privacy
GET /goal/help
GET /goal/home
GET /goal/privacy
GET /goal_help
GET /goal_home
GET /goal_privacy
GET /home
GET /index
GET /libraries
GET /login
GET /login_fail
GET /note/explore/about
GET /note/help
GET /note/home
GET /note/privacy
GET /note_help
GET /note_home
GET /privacy
GET /rest/file/audio/{fileName}
GET /rest/file/download/{fileName}
GET /rest/file/get/{fileName}
GET /secret/help
GET /secret/password
GET /secret/privacy
GET /secret_password
GET /secret_privacy
GET /translate
POST /admin/config/add
POST /admin/config/disable
POST /admin/config/enable
POST /admin/config/info
POST /admin/config/update
POST /admin/detail
POST /admin/files/upload_data
POST /admin/files/upload_image
POST /admin/files/uploaded_images
POST /admin/limiting/unban
POST /admin/limiting/unban-ip
POST /admin/payment/deny
POST /admin/payment/pass
POST /admin/redeemcode/generate
POST /admin/redeemcode/infos
POST /rest/ai/asr_tencent
POST /rest/ai/asr_tencent_dev
POST /rest/ai/chat
POST /rest/ai/chatDev
POST /rest/ai/chat_complex
POST /rest/ai/chat_complex_dev
POST /rest/ai/text/accurate
POST /rest/ai/text/accurateBasic
POST /rest/ai/text/general
POST /rest/ai/text/generalBasic
POST /rest/ai/text_2_voice_cosy
POST /rest/ai/text_2_voice_cosy_dev
POST /rest/ai/text_2_voice_sambert
POST /rest/ai/text_2_voice_sambert_dev
POST /rest/ai/tts_tencent
POST /rest/ai/tts_tencent_dev
POST /rest/ai/voice_tk
POST /rest/ai/voice_tk_dev
POST /rest/aile/article
POST /rest/aile/course
POST /rest/aile/courses
POST /rest/aile/favorite
POST /rest/aile/favorites
POST /rest/aile/search
POST /rest/aile/unfavorite
POST /rest/aileplan/add_path
POST /rest/aileplan/create
POST /rest/aileplan/del_path
POST /rest/aileplan/delete
POST /rest/aileplan/paths
POST /rest/aileplan/plans
POST /rest/aileplan/sort_paths
POST /rest/aileplan/suggest
POST /rest/aileplan/update
POST /rest/aileplan/update_path
POST /rest/app/app_accounts
POST /rest/app/config
POST /rest/app/configV2
POST /rest/app/dev_accounts
POST /rest/app/feedback
POST /rest/app/kc
POST /rest/app/kc_dev
POST /rest/app/mdArticle
POST /rest/app/recommend_apps
POST /rest/app/reviews
POST /rest/app/reviewsV2
POST /rest/app/topics
POST /rest/app/topicsV2
POST /rest/device/addCrash
POST /rest/device/devInfo
POST /rest/device/info
POST /rest/device/messages
POST /rest/device/read
POST /rest/device/register
POST /rest/device/track
POST /rest/eight/categories
POST /rest/eight/list
POST /rest/eight/search
POST /rest/eight/sub_categories
POST /rest/expose/apple
POST /rest/file/upload_crash
POST /rest/language/addEnglish
POST /rest/language/checkEnglish
POST /rest/language/getEnglish
POST /rest/language/getGptWord
POST /rest/language/talk_scenarios
POST /rest/language/talk_scenarios_talks
POST /rest/language/translate
POST /rest/language/translate_dev
POST /rest/payment/commit
POST /rest/payment/commitGoogle
POST /rest/payment/commitRedeemCode
POST /rest/payment/state
POST /rest/payment/verifyApple
POST /rest/payment/verifyGoogle
POST /rest/product/commit
POST /rest/product/commitGoogle
POST /rest/product/goods
POST /rest/product/state
POST /rest/product/verifyGoogle
POST /rest/purchase/bindPrivileges
POST /rest/purchase/restoreApple
POST /rest/purchase/verifyApple
POST /rest/user/bind
POST /rest/user/cancel_aux
POST /rest/user/change_password
POST /rest/user/check_code
POST /rest/user/disable
POST /rest/user/get_code
POST /rest/user/get_info
POST /rest/user/get_user_info
POST /rest/user/login
POST /rest/user/logout
POST /rest/user/messages
POST /rest/user/read
POST /rest/user/register
POST /rest/user/set_aux
POST /rest/user/transfer
POST /rest/user/unbind
POST /rest/user/update_user_info
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec812026947f332fac4b22b7a3fed1daa59006e043
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
GET /about_box
GET /admin
GET /admin/
GET /admin/config/dashboard
GET /admin/config/list
GET /admin/config/pageAdd
GET /admin/config/pageUpdate
GET /admin/device/dashboard
GET /admin/device/list
GET /admin/feedback/dashboard
GET /admin/feedback/list
GET /admin/files/dashboard
GET /admin/index
GET /admin/index.html
GET /admin/login
GET /admin/logout
GET /admin/payment/dashboard
GET /admin/payment/list
GET /admin/redeemcode/dashboard
GET /app/anyHtml
GET /app/anyPage
GET /app/help
GET /app/home
GET /app/mdHtml
GET /app/privacy
GET /code
GET /common/kaptcha
GET /english/privacy
GET /english_privacy
GET /goal/help
GET /goal/home
GET /goal/privacy
GET /goal_help
GET /goal_home
GET /goal_privacy
GET /home
GET /index
GET /libraries
GET /login
GET /login_fail
GET /note/explore/about
GET /note/help
GET /note/home
GET /note/privacy
GET /note_help
GET /note_home
GET /privacy
GET /rest/file/audio/{fileName}
GET /rest/file/download/{fileName}
GET /rest/file/get/{fileName}
GET /secret/help
GET /secret/password
GET /secret/privacy
GET /secret_password
GET /secret_privacy
GET /translate
POST /admin/config/add
POST /admin/config/disable
POST /admin/config/enable
POST /admin/config/info
POST /admin/config/update
POST /admin/detail
POST /admin/files/upload_data
POST /admin/files/upload_image
POST /admin/files/uploaded_images
POST /admin/payment/deny
POST /admin/payment/pass
POST /admin/redeemcode/generate
POST /admin/redeemcode/infos
POST /rest/ai/asr_tencent
POST /rest/ai/asr_tencent_dev
POST /rest/ai/chat
POST /rest/ai/chatDev
POST /rest/ai/chat_complex
POST /rest/ai/chat_complex_dev
POST /rest/ai/text/accurate
POST /rest/ai/text/accurateBasic
POST /rest/ai/text/general
POST /rest/ai/text/generalBasic
POST /rest/ai/text_2_voice_cosy
POST /rest/ai/text_2_voice_cosy_dev
POST /rest/ai/text_2_voice_sambert
POST /rest/ai/text_2_voice_sambert_dev
POST /rest/ai/tts_tencent
POST /rest/ai/tts_tencent_dev
POST /rest/ai/voice_tk
POST /rest/ai/voice_tk_dev
POST /rest/app/app_accounts
POST /rest/app/config
POST /rest/app/configV2
POST /rest/app/dev_accounts
POST /rest/app/feedback
POST /rest/app/kc
POST /rest/app/kc_dev
POST /rest/app/mdArticle
POST /rest/app/recommend_apps
POST /rest/app/reviews
POST /rest/app/reviewsV2
POST /rest/app/topics
POST /rest/app/topicsV2
POST /rest/device/addCrash
POST /rest/device/devInfo
POST /rest/device/info
POST /rest/device/messages
POST /rest/device/read
POST /rest/device/register
POST /rest/device/track
POST /rest/eight/categories
POST /rest/eight/list
POST /rest/eight/search
POST /rest/eight/sub_categories
POST /rest/expose/apple
POST /rest/file/upload_crash
POST /rest/language/addEnglish
POST /rest/language/checkEnglish
POST /rest/language/getEnglish
POST /rest/language/getGptWord
POST /rest/language/talk_scenarios
POST /rest/language/talk_scenarios_talks
POST /rest/language/translate
POST /rest/language/translate_dev
POST /rest/payment/commit
POST /rest/payment/commitGoogle
POST /rest/payment/commitRedeemCode
POST /rest/payment/state
POST /rest/payment/verifyApple
POST /rest/payment/verifyGoogle
POST /rest/product/commit
POST /rest/product/commitGoogle
POST /rest/product/goods
POST /rest/product/state
POST /rest/product/verifyGoogle
POST /rest/purchase/bindPrivileges
POST /rest/purchase/restoreApple
POST /rest/purchase/verifyApple
POST /rest/user/bind
POST /rest/user/cancel_aux
POST /rest/user/change_password
POST /rest/user/check_code
POST /rest/user/disable
POST /rest/user/get_code
POST /rest/user/get_info
POST /rest/user/get_user_info
POST /rest/user/login
POST /rest/user/logout
POST /rest/user/messages
POST /rest/user/read
POST /rest/user/register
POST /rest/user/set_aux
POST /rest/user/transfer
POST /rest/user/unbind
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec812026947f332fac4b22b7a3cbae6665b101809b
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
GET /about_box
GET /admin
GET /admin/
GET /admin/aile/stats
GET /admin/config/dashboard
GET /admin/config/list
GET /admin/config/pageAdd
GET /admin/config/pageUpdate
GET /admin/device/dashboard
GET /admin/device/list
GET /admin/feedback/dashboard
GET /admin/feedback/list
GET /admin/files/dashboard
GET /admin/index
GET /admin/index.html
GET /admin/limiting/dashboard
GET /admin/login
GET /admin/logout
GET /admin/payment/dashboard
GET /admin/payment/list
GET /admin/redeemcode/dashboard
GET /app/anyHtml
GET /app/anyPage
GET /app/help
GET /app/home
GET /app/mdHtml
GET /app/privacy
GET /code
GET /common/kaptcha
GET /english/privacy
GET /english_privacy
GET /goal/help
GET /goal/home
GET /goal/privacy
GET /goal_help
GET /goal_home
GET /goal_privacy
GET /home
GET /index
GET /libraries
GET /login
GET /login_fail
GET /note/explore/about
GET /note/help
GET /note/home
GET /note/privacy
GET /note_help
GET /note_home
GET /privacy
GET /rest/file/audio/{fileName}
GET /rest/file/download/{fileName}
GET /rest/file/get/{fileName}
GET /secret/help
GET /secret/password
GET /secret/privacy
GET /secret_password
GET /secret_privacy
GET /translate
POST /admin/config/add
POST /admin/config/disable
POST /admin/config/enable
POST /admin/config/info
POST /admin/config/update
POST /admin/detail
POST /admin/files/upload_data
POST /admin/files/upload_image
POST /admin/files/uploaded_images
POST /admin/limiting/unban
POST /admin/limiting/unban-ip
POST /admin/payment/deny
POST /admin/payment/pass
POST /admin/redeemcode/generate
POST /admin/redeemcode/infos
POST /rest/ai/asr_tencent
POST /rest/ai/asr_tencent_dev
POST /rest/ai/chat
POST /rest/ai/chatDev
POST /rest/ai/chat_complex
POST /rest/ai/chat_complex_dev
POST /rest/ai/text/accurate
POST /rest/ai/text/accurateBasic
POST /rest/ai/text/general
POST /rest/ai/text/generalBasic
POST /rest/ai/text_2_voice_cosy
POST /rest/ai/text_2_voice_cosy_dev
POST /rest/ai/text_2_voice_sambert
POST /rest/ai/text_2_voice_sambert_dev
POST /rest/ai/tts_tencent
POST /rest/ai/tts_tencent_dev
POST /rest/ai/voice_tk
POST /rest/ai/voice_tk_dev
POST /rest/aile/article
POST /rest/aile/course
POST /rest/aile/courses
POST /rest/aile/favorite
POST /rest/aile/favorites
POST /rest/aile/search
POST /rest/aile/unfavorite
POST /rest/aileplan/add_path
POST /rest/aileplan/create
POST /rest/aileplan/del_path
POST /rest/aileplan/delete
POST /rest/aileplan/paths
POST /rest/aileplan/plans
POST /rest/aileplan/sort_paths
POST /rest/aileplan/suggest
POST /rest/aileplan/update
POST /rest/aileplan/update_path
POST /rest/app/app_accounts
POST /rest/app/config
POST /rest/app/configV2
POST /rest/app/dev_accounts
POST /rest/app/feedback
POST /rest/app/kc
POST /rest/app/kc_dev
POST /rest/app/mdArticle
POST /rest/app/recommend_apps
POST /rest/app/reviews
POST /rest/app/reviewsV2
POST /rest/app/topics
POST /rest/app/topicsV2
POST /rest/device/addCrash
POST /rest/device/devInfo
POST /rest/device/info
POST /rest/device/messages
POST /rest/device/read
POST /rest/device/register
POST /rest/device/track
POST /rest/eight/categories
POST /rest/eight/list
POST /rest/eight/search
POST /rest/eight/sub_categories
POST /rest/expose/apple
POST /rest/file/upload_crash
POST /rest/language/addEnglish
POST /rest/language/checkEnglish
POST /rest/language/getEnglish
POST /rest/language/getGptWord
POST /rest/language/talk_scenarios
POST /rest/language/talk_scenarios_talks
POST /rest/language/translate
POST /rest/language/translate_dev
POST /rest/payment/commit
POST /rest/payment/commitGoogle
POST /rest/payment/commitRedeemCode
POST /rest/payment/state
POST /rest/payment/verifyApple
POST /rest/payment/verifyGoogle
POST /rest/product/commit
POST /rest/product/commitGoogle
POST /rest/product/goods
POST /rest/product/state
POST /rest/product/verifyGoogle
POST /rest/purchase/bindPrivileges
POST /rest/purchase/restoreApple
POST /rest/purchase/verifyApple
POST /rest/user/bind
POST /rest/user/cancel_aux
POST /rest/user/change_password
POST /rest/user/check_code
POST /rest/user/disable
POST /rest/user/get_code
POST /rest/user/get_info
POST /rest/user/get_user_info
POST /rest/user/login
POST /rest/user/logout
POST /rest/user/messages
POST /rest/user/read
POST /rest/user/register
POST /rest/user/set_aux
POST /rest/user/transfer
POST /rest/user/unbind
POST /rest/user/update_user_info
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec812026947f332fac4b22b7a3fed1daa59006e043
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
GET /about_box
GET /admin
GET /admin/
GET /admin/config/dashboard
GET /admin/config/list
GET /admin/config/pageAdd
GET /admin/config/pageUpdate
GET /admin/device/dashboard
GET /admin/device/list
GET /admin/feedback/dashboard
GET /admin/feedback/list
GET /admin/files/dashboard
GET /admin/index
GET /admin/index.html
GET /admin/login
GET /admin/logout
GET /admin/payment/dashboard
GET /admin/payment/list
GET /admin/redeemcode/dashboard
GET /app/anyHtml
GET /app/anyPage
GET /app/help
GET /app/home
GET /app/mdHtml
GET /app/privacy
GET /code
GET /common/kaptcha
GET /english/privacy
GET /english_privacy
GET /goal/help
GET /goal/home
GET /goal/privacy
GET /goal_help
GET /goal_home
GET /goal_privacy
GET /home
GET /index
GET /libraries
GET /login
GET /login_fail
GET /note/explore/about
GET /note/help
GET /note/home
GET /note/privacy
GET /note_help
GET /note_home
GET /privacy
GET /rest/file/audio/{fileName}
GET /rest/file/download/{fileName}
GET /rest/file/get/{fileName}
GET /secret/help
GET /secret/password
GET /secret/privacy
GET /secret_password
GET /secret_privacy
GET /translate
POST /admin/config/add
POST /admin/config/disable
POST /admin/config/enable
POST /admin/config/info
POST /admin/config/update
POST /admin/detail
POST /admin/files/upload_data
POST /admin/files/upload_image
POST /admin/files/uploaded_images
POST /admin/payment/deny
POST /admin/payment/pass
POST /admin/redeemcode/generate
POST /admin/redeemcode/infos
POST /rest/ai/asr_tencent
POST /rest/ai/asr_tencent_dev
POST /rest/ai/chat
POST /rest/ai/chatDev
POST /rest/ai/chat_complex
POST /rest/ai/chat_complex_dev
POST /rest/ai/text/accurate
POST /rest/ai/text/accurateBasic
POST /rest/ai/text/general
POST /rest/ai/text/generalBasic
POST /rest/ai/text_2_voice_cosy
POST /rest/ai/text_2_voice_cosy_dev
POST /rest/ai/text_2_voice_sambert
POST /rest/ai/text_2_voice_sambert_dev
POST /rest/ai/tts_tencent
POST /rest/ai/tts_tencent_dev
POST /rest/ai/voice_tk
POST /rest/ai/voice_tk_dev
POST /rest/app/app_accounts
POST /rest/app/config
POST /rest/app/configV2
POST /rest/app/dev_accounts
POST /rest/app/feedback
POST /rest/app/kc
POST /rest/app/kc_dev
POST /rest/app/mdArticle
POST /rest/app/recommend_apps
POST /rest/app/reviews
POST /rest/app/reviewsV2
POST /rest/app/topics
POST /rest/app/topicsV2
POST /rest/device/addCrash
POST /rest/device/devInfo
POST /rest/device/info
POST /rest/device/messages
POST /rest/device/read
POST /rest/device/register
POST /rest/device/track
POST /rest/eight/categories
POST /rest/eight/list
POST /rest/eight/search
POST /rest/eight/sub_categories
POST /rest/expose/apple
POST /rest/file/upload_crash
POST /rest/language/addEnglish
POST /rest/language/checkEnglish
POST /rest/language/getEnglish
POST /rest/language/getGptWord
POST /rest/language/talk_scenarios
POST /rest/language/talk_scenarios_talks
POST /rest/language/translate
POST /rest/language/translate_dev
POST /rest/payment/commit
POST /rest/payment/commitGoogle
POST /rest/payment/commitRedeemCode
POST /rest/payment/state
POST /rest/payment/verifyApple
POST /rest/payment/verifyGoogle
POST /rest/product/commit
POST /rest/product/commitGoogle
POST /rest/product/goods
POST /rest/product/state
POST /rest/product/verifyGoogle
POST /rest/purchase/bindPrivileges
POST /rest/purchase/restoreApple
POST /rest/purchase/verifyApple
POST /rest/user/bind
POST /rest/user/cancel_aux
POST /rest/user/change_password
POST /rest/user/check_code
POST /rest/user/disable
POST /rest/user/get_code
POST /rest/user/get_info
POST /rest/user/get_user_info
POST /rest/user/login
POST /rest/user/logout
POST /rest/user/messages
POST /rest/user/read
POST /rest/user/register
POST /rest/user/set_aux
POST /rest/user/transfer
POST /rest/user/unbind
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa33c624c3d0d0972dfbbcbafc6313774a6313774a6
GraphQL introspection enabled at /graphql Types: 54 (by kind: ENUM: 2, OBJECT: 47, SCALAR: 5) Operations: - Query: Query Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec80cc340dea70b017eb7032954665ca6d09518c93
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
DELETE /favorite/deleteByIdAndUserId
DELETE /favorite/deleteByUserId/{userId}
GET /aiFont/detail/{id}
GET /aiFont/label/list
GET /aiFont/main/list
GET /aiFont/page
GET /allTags
GET /allTools
GET /back/toolList
GET /cors
GET /cp/auto
GET /cp/check
GET /cp/cplist
GET /cp/fastHandler
GET /cp/list
GET /cp/update
GET /download
GET /download.html
GET /error
GET /favorite/getById/{id}
GET /favorite/getByUserId/{userId}
GET /fm/get
GET /fm/list
GET /fontList/ZiYouPreview
GET /fontList/buildHtml
GET /fontList/checkTitle
GET /fontList/downloadFontListCover
GET /fontList/gafl
GET /fontList/get
GET /fontList/getAllFontList
GET /fontList/getFollowList
GET /fontList/getFontIdByFontListID
GET /fontList/getFontList
GET /fontList/getFontListById
GET /fontList/getFontListIdsByUserId
GET /fontList/getFontListListByUserId
GET /fontList/getFontsByFontListID
GET /fontList/getHotFontList
GET /fontList/getIp
GET /fontList/getMyFontListAndFontIdsByUserId
GET /fontList/getMyFontListsByUserId
GET /fontList/getTags
GET /fontList/getUserFontListInfo
GET /fontList/getUsers
GET /fontList/upFontListToUser
GET /fontList/upFontToFontList
GET /fontlist
GET /fontlist2
GET /fonts.html
GET /getFontsByFontId
GET /getTradeFontInfo
GET /glosary
GET /helpFind/getHelpFindByIdentity
GET /helpFind/test
GET /index.html
GET /main/toolList
GET /meList
GET /more.html
GET /net/box
GET /net/boxDetail
GET /paydownload
GET /paydownload.html
GET /simpleGetByIds
GET /statistics
GET /taglist
GET /thirdParty/qqLogin
GET /thirdParty/qqLoginAfter
GET /thirdparty_download/del
GET /thirdparty_download/get
GET /thirdparty_download/list
GET /thirdparty_download/list2
GET /thirdparty_download/listByMd5
GET /thirdparty_download/reloadId
GET /thirdparty_download/url
GET /threshold/reset
GET /tools/{urlName}
GET /ziyoufontlist
POST /cp/addcp
POST /cp/delCp
POST /cp/handler_result
POST /cp/updatecp
POST /favorite/postFavorite
POST /fm/bind
POST /fm/creatOrUpadte
POST /font/confirmComponents
POST /font/correctcomponents
POST /font/getComponents
POST /font/mergeComponents
POST /font/update
POST /font/uploadFontImg
POST /font/uploadImgByBase64
POST /fontList/addFontList
POST /fontList/addImageList
POST /fontList/addZiYouFont
POST /fontList/checkIsFollow
POST /fontList/deleteFontList
POST /fontList/deleteImage
POST /fontList/enableFontList
POST /fontList/follow
POST /fontList/getImageProperty
POST /fontList/reportFontList
POST /fontList/setPrivate
POST /fontList/unfollow
POST /fontList/unshiftFontInFontList
POST /fontList/upFontList
POST /fontList/upImageList
POST /fontList/updateCollectCount
POST /fontList/uploadFontListCover
POST /helpFind/createHelpFind
POST /helpFind/list
POST /tbox/tep
POST /tbox/uep
POST /thirdparty_download/put
POST /thirdparty_download/putOrUpdate
POST /uio
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec80cc340dea70b017eb7032954665ca6dd81066dc
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
DELETE /favorite/deleteByIdAndUserId
DELETE /favorite/deleteByUserId/{userId}
GET /aiFont/detail/{id}
GET /aiFont/label/list
GET /aiFont/main/list
GET /aiFont/page
GET /allTags
GET /allTools
GET /back/toolList
GET /cors
GET /cp/auto
GET /cp/check
GET /cp/cplist
GET /cp/list
GET /download
GET /download.html
GET /error
GET /favorite/getById/{id}
GET /favorite/getByUserId/{userId}
GET /fm/get
GET /fm/list
GET /fontList/ZiYouPreview
GET /fontList/buildHtml
GET /fontList/checkTitle
GET /fontList/downloadFontListCover
GET /fontList/gafl
GET /fontList/get
GET /fontList/getAllFontList
GET /fontList/getFollowList
GET /fontList/getFontIdByFontListID
GET /fontList/getFontList
GET /fontList/getFontListById
GET /fontList/getFontListIdsByUserId
GET /fontList/getFontListListByUserId
GET /fontList/getFontsByFontListID
GET /fontList/getHotFontList
GET /fontList/getIp
GET /fontList/getMyFontListAndFontIdsByUserId
GET /fontList/getMyFontListsByUserId
GET /fontList/getTags
GET /fontList/getUserFontListInfo
GET /fontList/getUsers
GET /fontList/upFontListToUser
GET /fontList/upFontToFontList
GET /fontlist
GET /fontlist2
GET /fonts.html
GET /getFontsByFontId
GET /getTradeFontInfo
GET /glosary
GET /helpFind/getHelpFindByIdentity
GET /helpFind/test
GET /index.html
GET /main/toolList
GET /meList
GET /more.html
GET /net/box
GET /net/boxDetail
GET /paydownload
GET /paydownload.html
GET /simpleGetByIds
GET /statistics
GET /taglist
GET /thirdParty/qqLogin
GET /thirdParty/qqLoginAfter
GET /thirdparty_download/del
GET /thirdparty_download/get
GET /thirdparty_download/list
GET /thirdparty_download/list2
GET /thirdparty_download/listByMd5
GET /thirdparty_download/reloadId
GET /thirdparty_download/url
GET /threshold/reset
GET /tools/{urlName}
GET /ziyoufontlist
POST /cp/addcp
POST /cp/delCp
POST /cp/handler_result
POST /cp/updatecp
POST /favorite/postFavorite
POST /fm/bind
POST /fm/creatOrUpadte
POST /font/confirmComponents
POST /font/correctcomponents
POST /font/getComponents
POST /font/mergeComponents
POST /font/update
POST /font/uploadFontImg
POST /font/uploadImgByBase64
POST /fontList/addFontList
POST /fontList/addImageList
POST /fontList/addZiYouFont
POST /fontList/checkIsFollow
POST /fontList/deleteFontList
POST /fontList/deleteImage
POST /fontList/enableFontList
POST /fontList/follow
POST /fontList/getImageProperty
POST /fontList/reportFontList
POST /fontList/setPrivate
POST /fontList/unfollow
POST /fontList/unshiftFontInFontList
POST /fontList/upFontList
POST /fontList/upImageList
POST /fontList/updateCollectCount
POST /fontList/uploadFontListCover
POST /helpFind/createHelpFind
POST /helpFind/list
POST /tbox/tep
POST /tbox/uep
POST /thirdparty_download/put
POST /thirdparty_download/putOrUpdate
POST /uio
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c39aac35b39aac35bb00b015ba6b58c985eb383def7e79785
Found 14 files trough .DS_Store spidering: /admin_path /themes /themes/cart /themes/cart/server /themes/cart/server/static /themes/cart/server/static/script /themes/clientarea /themes/clientarea/userCenter /themes/clientarea/userCenter/static /themes/clientarea/userCenter/static/script /themes/web /themes/web/www /themes/web/www/static /themes/web/www/static/script
Severity: low
Fingerprint: 5f32cf5d6962f09c3af247253af247252e58b0b5a3bd65f62bc8b560a138d918
Found 9 files trough .DS_Store spidering: /admin_path /themes /themes/cart /themes/cart/server /themes/cart/server/static /themes/cart/server/static/script /themes/clientarea /themes/web /themes/web/www
Severity: low
Fingerprint: 5f32cf5d6962f09c4239b3d84239b3d85e7ce8cec33c5a03bde79fbded9a76f1
Found 8 files trough .DS_Store spidering: /admin_path /themes /themes/cart /themes/cart/server /themes/cart/server/static /themes/cart/server/static/script /themes/clientarea /themes/web
Severity: low
Fingerprint: 5f32cf5d6962f09cec7f8772ec7f8772f2d70b185b1702213d05204fe559e8e6
Found 11 files trough .DS_Store spidering: /admin_path /themes /themes/cart /themes/cart/server /themes/cart/server/static /themes/cart/server/static/script /themes/clientarea /themes/clientarea/userCenter /themes/clientarea/userCenter/static /themes/clientarea/userCenter/static/script /themes/web
Severity: low
Fingerprint: 5f32cf5d6962f09c11d3744d11d3744d2144e38d3c50008e730aabb8958d0a2f
Found 12 files trough .DS_Store spidering: /admin_path /themes /themes/cart /themes/cart/server /themes/cart/server/static /themes/cart/server/static/script /themes/clientarea /themes/clientarea/userCenter /themes/clientarea/userCenter/static /themes/clientarea/userCenter/static/script /themes/web /themes/web/www
Severity: low
Fingerprint: 5f32cf5d6962f09c3af247253af247252e58b0b5a3bd65f62bc8b560d7f68c6b
Found 9 files trough .DS_Store spidering: /admin_path /themes /themes/cart /themes/cart/server /themes/cart/server/static /themes/cart/server/static/script /themes/clientarea /themes/clientarea/userCenter /themes/web
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd18553ecf71a64bb4a497ec9e58e810595dbbae9b26b0fc365
Public Swagger UI/API detected at path: /swagger-ui.html - sample paths:
GET /
GET /case
GET /case/art/{caseid}.html
GET /case/{typeid}
GET /ckztjjfa
GET /companyprofile
GET /concatus
GET /constructi
GET /cooperationCase/findCooperationCase
GET /cooperationCase/findCooperationCaseType
GET /cooperationCase/findOneCooperationCase
GET /cooperationCase/findPopularCooperationCase
GET /devehistory
GET /development
GET /eduInfo/closeEduInfo
GET /eduInfo/enableEduInfo
GET /eduInfo/getEduInfoStatus
GET /eduinfo
GET /eduinfo/{eduinfoId}.html
GET /honor
GET /ipfh
GET /joinus
GET /kczz
GET /news
GET /news/info/{newsid}.html
GET /news/{newstypeid}
GET /news/{newstypeid}/{page}
GET /newsInformation/findNewsInformation
GET /newsInformation/findNewsInformationType
GET /newsInformation/findOneNewsInformation
GET /newsInformation/findPopularNewsInformation
GET /onlineedu
GET /place
GET /plan
GET /plancontent
GET /privacy
GET /projectIndex/getVersionLogs
GET /qcgcjxsxjjfa
GET /singlePage/recordAppoint
GET /sjjxjjfa
GET /test
GET /version/info/{versionId}.html
GET /versionlog
GET /xxaqcpjjfa
POST /companyProfile/insertChannelAgent
POST /companyProfile/queryCompanyCertificate
POST /companyProfile/queryCompanyDevelopmentHistory
POST /companyProfile/queryCompanyProfileJoinUs
POST /development/insertDevelopment
POST /file/getFile
POST /file/uploadFile
POST /index/{phone}
POST /index/{verCode}
POST /productScheme/insertProductSchemeReadNbr
POST /productScheme/queryEducateCase
POST /productScheme/queryExcellenceImg
POST /productScheme/queryProductScheme
POST /projectIndex/sendSMS
POST /projectIndex/verifCode
POST /projectIndex/verifyVerificationCode
POST /resources/deleteBatch
POST /resources/queryResourcesPrefix
POST /resources/uploadBatch
POST /solution/insertSchemeCustom
POST /solution/queryProductSolution
POST /solution/updateProductSolutionReadNbr
POST /token/login
POST /token/logout
POST /token/testLogin
Severity: info
Fingerprint: 5733ddf49ff49cd1b6e67656b6e67656b6e67656b6e67656b6e67656b6e67656
Public Swagger UI/API detected at path: /swagger-ui.html
Severity: info
Fingerprint: 5733ddf49ff49cd110a331ec2d35ea6f778f2f6eb6ab2224f383f11b767434a2
Public Swagger UI/API detected at path: /v2/api-docs - sample paths:
GET /
GET /case
GET /case/art/{caseid}.html
GET /case/{typeid}
GET /ckztjjfa
GET /companyprofile
GET /concatus
GET /constructi
GET /cooperationCase/findCooperationCase
GET /cooperationCase/findCooperationCaseType
GET /cooperationCase/findOneCooperationCase
GET /cooperationCase/findPopularCooperationCase
GET /devehistory
GET /development
GET /eduInfo/closeEduInfo
GET /eduInfo/enableEduInfo
GET /eduInfo/getEduInfoStatus
GET /eduinfo
GET /eduinfo/{eduinfoId}.html
GET /honor
GET /ipfh
GET /joinus
GET /kczz
GET /news
GET /news/info/{newsid}.html
GET /news/{newstypeid}
GET /news/{newstypeid}/{page}
GET /newsInformation/findNewsInformation
GET /newsInformation/findNewsInformationType
GET /newsInformation/findOneNewsInformation
GET /newsInformation/findPopularNewsInformation
GET /onlineedu
GET /place
GET /plan
GET /plancontent
GET /privacy
GET /projectIndex/getVersionLogs
GET /qcgcjxsxjjfa
GET /singlePage/recordAppoint
GET /sjjxjjfa
GET /test
GET /version/info/{versionId}.html
GET /versionlog
GET /xxaqcpjjfa
POST /companyProfile/insertChannelAgent
POST /companyProfile/queryCompanyCertificate
POST /companyProfile/queryCompanyDevelopmentHistory
POST /companyProfile/queryCompanyProfileJoinUs
POST /development/insertDevelopment
POST /file/getFile
POST /file/uploadFile
POST /index/{phone}
POST /index/{verCode}
POST /productScheme/insertProductSchemeReadNbr
POST /productScheme/queryEducateCase
POST /productScheme/queryExcellenceImg
POST /productScheme/queryProductScheme
POST /projectIndex/sendSMS
POST /projectIndex/verifCode
POST /projectIndex/verifyVerificationCode
POST /resources/deleteBatch
POST /resources/queryResourcesPrefix
POST /resources/uploadBatch
POST /solution/insertSchemeCustom
POST /solution/queryProductSolution
POST /solution/updateProductSolutionReadNbr
POST /token/login
POST /token/logout
POST /token/testLogin
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1f3d88d600445d5e4ca2e1acb92950d26431c3504a4d9077f
Public Swagger UI/API detected at path: /swagger/v1/swagger.json - sample paths: POST /api/BannerSetting POST /api/Blogroll POST /api/CompanyHistory POST /api/Contactus POST /api/Course POST /api/CourseDetails POST /api/Credential POST /api/DemandSave POST /api/Developingcourse POST /api/FilterArticleByTagId POST /api/Generaldetails POST /api/Generalvideo POST /api/GetArticleByTagName POST /api/League POST /api/MainBusiness POST /api/News POST /api/OnlineMessage POST /api/OtherDetails POST /api/PageSetting POST /api/Partners POST /api/PartnersQuality POST /api/PositionList POST /api/Product POST /api/ProductCategory POST /api/RecruitDetails POST /api/RecruitList POST /api/SendSMSCode POST /api/SolutionDetails POST /api/SolutionList POST /api/SolutionTag POST /api/TheArticleSearch POST /api/TheNewestArticleDetails POST /api/TheNewestArticleList POST /api/TopArticle POST /api/TopTag POST /api/TypicalCase POST /api/TypicalCaseDetails POST /api/TypicalCaseIndustry POST /api/TypicalCaseTag POST /api/UploadFile POST /api/UploadFileByByte POST /api/UploadImage POST /api/UploadImageBase64 POST /api/UploadLargeFile POST /api/UploadLargeVideo POST /api/UploadVideo POST /api/UserAgreement POST /api/VerificationCodeValidation
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa33c624c3d0d0972dfbbcbafc6313774a6313774a6
GraphQL introspection enabled at /graphql Types: 54 (by kind: ENUM: 2, OBJECT: 47, SCALAR: 5) Operations: - Query: Query Directives: deprecated, include, skip (total: 3)
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c2eda814e2eda814ec721680e1f4901b74b5234301f9c8ddf
Found 6 files trough .DS_Store spidering: /app /app/plugins /app/plugins/chinaport179 /app/route /public /static
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c2acf29aa2acf29aa35a85fb141e66eb7a59fa86bb2a39cd1
Found 33 files trough .DS_Store spidering: /applive.html /appmanager.html /apps.html /apps2.html /appstest.html /color-palette.html /css /d80aad8214507201436f239d2b4b9754.txt /debug-form.html /delaytest.html /download.html /help /help/_navbar.md /help/_sidebar.md /help/about.md /help/changelog /help/faq /help/guide /help/guide/live.md /help/guide/manager.md /help/guide/pics /help/guide/web.md /help/index.html /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /test-form.html /user_agreement.html
Severity: low
Fingerprint: 5f32cf5d6962f09c9e04c3bc9e04c3bc86e25c8b41025cb5841df33501637dc0
Found 22 files trough .DS_Store spidering: /applive.html /appmanager.html /apps.html /apps2.html /appstest.html /color-palette.html /css /d80aad8214507201436f239d2b4b9754.txt /debug-form.html /delaytest.html /download.html /help /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /test-form.html /user_agreement.html
Severity: low
Fingerprint: 5f32cf5d6962f09ca0cc0fcfa0cc0fcf9fd1def3edc26792e812e69220590504
Found 25 files trough .DS_Store spidering: /apps.html /color-palette.html /css /download.html /help /help/_navbar.md /help/_sidebar.md /help/about.md /help/changelog /help/faq /help/guide /help/guide/live.md /help/guide/manager.md /help/guide/pics /help/guide/web.md /help/index.html /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /user_agreement.html
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c2acf29aa2acf29aa35a85fb141e66eb7a59fa86bb2a39cd1
Found 33 files trough .DS_Store spidering: /applive.html /appmanager.html /apps.html /apps2.html /appstest.html /color-palette.html /css /d80aad8214507201436f239d2b4b9754.txt /debug-form.html /delaytest.html /download.html /help /help/_navbar.md /help/_sidebar.md /help/about.md /help/changelog /help/faq /help/guide /help/guide/live.md /help/guide/manager.md /help/guide/pics /help/guide/web.md /help/index.html /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /test-form.html /user_agreement.html
Severity: low
Fingerprint: 5f32cf5d6962f09cf35cbfb3f35cbfb3241a5b8e50cb54788d704b642e7730e5
Found 29 files trough .DS_Store spidering: /applive.html /appmanager.html /apps.html /apps2.html /appstest.html /color-palette.html /css /d80aad8214507201436f239d2b4b9754.txt /debug-form.html /delaytest.html /download.html /help /help/_navbar.md /help/_sidebar.md /help/about.md /help/changelog /help/faq /help/guide /help/index.html /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /test-form.html /user_agreement.html
Severity: low
Fingerprint: 5f32cf5d6962f09cab28146bab28146b4fba6b47bbd0ee3ed8882d46bdd8adb9
Found 21 files trough .DS_Store spidering: /apps.html /color-palette.html /css /download.html /help /help/_navbar.md /help/_sidebar.md /help/about.md /help/changelog /help/faq /help/guide /help/index.html /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /user_agreement.html
Severity: low
Fingerprint: 5f32cf5d6962f09ca0cc0fcfa0cc0fcf9fd1def3edc26792e812e69220590504
Found 25 files trough .DS_Store spidering: /apps.html /color-palette.html /css /download.html /help /help/_navbar.md /help/_sidebar.md /help/about.md /help/changelog /help/faq /help/guide /help/guide/live.md /help/guide/manager.md /help/guide/pics /help/guide/web.md /help/index.html /images /index.html /js /MP_verify_1OoWiJbfkiMxXZuD.txt /privacy_agreement.html /qualifications.html /robots.txt /sitemap.xml /user_agreement.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd151e75e4b50d22d7cc8fbc005b322f613b97ffa33a249d316
Public Swagger UI/API detected at path: /v3/api-docs - sample paths:
DELETE /tokens/{tokenId}
DELETE /two-factor-auth/totp
GET /alipay/return
GET /announce
GET /bill
GET /bill/balance
GET /bill/isPay
GET /bill/summary
GET /bill/transactions
GET /feature
GET /forgetPass/checkCode
GET /forgetPass/sendCode
GET /isLogin
GET /login-record
GET /register/checkInviteCode
GET /register/sendCode
GET /subsite
GET /subsite/domain/{domain}
GET /subsite/{id}
GET /task/reductionPrice
GET /task/reductionPrices
GET /task/statistics
GET /task/taskList
GET /task/{id}
GET /task/{id}/downloadUrl
GET /task/{id}/result
GET /tmpLogin
GET /tokens
GET /two-factor-auth
GET /user/inviteCode
GET /user/point
GET /user/proxy
GET /user/proxy/announcement
GET /user/proxy/announcement/parent
GET /user/proxy/config
GET /user/proxy/level
GET /user/proxy/levels
GET /user/proxy/promotion-info
GET /user/proxy/rule
GET /user/proxy/statistics
GET /user/sendBindEmailCode
GET /user/sendNewEmailCode
GET /userInfo
GET /wechat/login
GET /wechat/payNotify
GET /wechat/platform
GET /wechat/service
POST /alipay/callback
POST /alipay/pay
POST /alipay/query
POST /douyin/callback
POST /douyin/pay
POST /douyinLogin
POST /forgetPass/resetPass
POST /login
POST /logout
POST /register
POST /task/reduction
POST /task/reduction/check
POST /task/uploadText
POST /tmpTokenRenew
POST /two-factor-auth/password/save
POST /two-factor-auth/send-email-code
POST /two-factor-auth/totp/save
POST /two-factor-auth/totp/setup
POST /two-factor-auth/totp/verify
POST /user/bindEmail
POST /user/changeEmail
POST /user/changePassword
POST /user/proxy/{userId}/password
POST /user/proxy/{userId}/recharge
POST /user/updateProfile
POST /wechat/callback
POST /wechat/pay
PUT /tokens/{tokenId}/ip-whitelist
PUT /tokens/{tokenId}/toggle-status
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044b81b03713d63bb82370a6522c0411973
[core] repositoryformatversion = 0 filemode = true bare = false logallrefupdates = true [remote "origin"] url = git@gitlab.kmlab.com:isp/space.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master [branch "xiyuan"] remote = origin merge = refs/heads/xiyuan
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737db148c044baa2727ab8135b5bbc521bbb9f43a2a4
[core] repositoryformatversion = 0 filemode = false bare = false logallrefupdates = true symlinks = false ignorecase = true [remote "origin"] url = https://gitee.com/foundao/qifujia-h5.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master vscode-merge-base = origin/master vscode-merge-base = origin/master [branch "feat/2024"] remote = origin merge = refs/heads/feat/2024 vscode-merge-base = origin/feat/2024 [branch "h5_foundao"] vscode-merge-base = origin/feat/2024 remote = origin merge = refs/heads/h5_foundao [branch "h5_pay"] vscode-merge-base = origin/master remote = origin merge = refs/heads/h5_pay [branch "h5-bzsw"] remote = origin merge = refs/heads/h5-bzsw vscode-merge-base = origin/h5-bzsw [branch "h5-landing"] vscode-merge-base = origin/h5-bzsw remote = origin merge = refs/heads/h5-landing
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549eca0cfe47c494542d2af3d6a8660e63804c5bb79
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /api/admin/form/data
GET /api/admin/form/dataAdd
GET /api/admin/form/dataLayerReply
GET /api/admin/form/forms
GET /api/admin/form/formsLayerAdd
GET /api/admin/form/settings
GET /api/admin/form/styles
GET /api/admin/form/templateHtml
GET /api/admin/form/templates
GET /api/admin/form/templatesLayerEdit
GET /api/admin/share
GET /api/form/ping
GET /api/form/{siteId}/{formId}
GET /api/ping
GET /api/ping/ip
GET /api/ping/status
GET /api/share/ping
GET /api/share/wx
GET /api/v1/administrators
GET /api/v1/administrators/{id}
GET /api/v1/captcha/{value}
GET /api/v1/channels/{siteId}
GET /api/v1/channels/{siteId}/{channelId}
GET /api/v1/contents/{siteId}/{channelId}/{id}
GET /api/v1/stl/{elementName}
GET /api/v1/users
GET /api/v1/users/{id}
GET /api/v1/users/{id}/avatar
GET /api/v1/users/{id}/logs
POST /api/admin/form/data/actions/columns
POST /api/admin/form/data/actions/delete
POST /api/admin/form/data/actions/export
POST /api/admin/form/data/actions/import
POST /api/admin/form/forms/actions/delete
POST /api/admin/form/forms/actions/down
POST /api/admin/form/forms/actions/export
POST /api/admin/form/forms/actions/import
POST /api/admin/form/forms/actions/up
POST /api/admin/form/formsLayerAdd/actions/update
POST /api/admin/form/styles/actions/delete
POST /api/admin/form/styles/actions/export
POST /api/admin/form/styles/actions/import
POST /api/admin/form/templates/actions/delete
POST /api/admin/form/templatesLayerEdit/actions/update
POST /api/admin/form/{siteId}/dataAdd/actions/deleteFile
POST /api/admin/form/{siteId}/dataAdd/actions/upload
POST /api/admin/share/settings
POST /api/admin/share/wxShare
POST /api/form/{siteId}/{formId}/actions/getForm
POST /api/form/{siteId}/{formId}/actions/sendSms
POST /api/v1/administrators/actions/login
POST /api/v1/administrators/actions/logout
POST /api/v1/administrators/actions/resetPassword
POST /api/v1/administrators/{id}/actions/delete
POST /api/v1/administrators/{id}/actions/update
POST /api/v1/captcha
POST /api/v1/captcha/actions/check
POST /api/v1/channels/{siteId}/{channelId}/actions/delete
POST /api/v1/channels/{siteId}/{channelId}/actions/update
POST /api/v1/contents
POST /api/v1/contents/actions/check
POST /api/v1/contents/{siteId}/{channelId}
POST /api/v1/contents/{siteId}/{channelId}/{id}/actions/delete
POST /api/v1/contents/{siteId}/{channelId}/{id}/actions/update
POST /api/v1/users/actions/login
POST /api/v1/users/actions/logout
POST /api/v1/users/{id}/actions/delete
POST /api/v1/users/{id}/actions/resetPassword
POST /api/v1/users/{id}/actions/update
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1aad03549eca0cfe47c494542d2af3d6a8660e63804c5bb79
Public Swagger UI/API detected at path: /swagger/index.html - sample paths:
GET /api/admin/form/data
GET /api/admin/form/dataAdd
GET /api/admin/form/dataLayerReply
GET /api/admin/form/forms
GET /api/admin/form/formsLayerAdd
GET /api/admin/form/settings
GET /api/admin/form/styles
GET /api/admin/form/templateHtml
GET /api/admin/form/templates
GET /api/admin/form/templatesLayerEdit
GET /api/admin/share
GET /api/form/ping
GET /api/form/{siteId}/{formId}
GET /api/ping
GET /api/ping/ip
GET /api/ping/status
GET /api/share/ping
GET /api/share/wx
GET /api/v1/administrators
GET /api/v1/administrators/{id}
GET /api/v1/captcha/{value}
GET /api/v1/channels/{siteId}
GET /api/v1/channels/{siteId}/{channelId}
GET /api/v1/contents/{siteId}/{channelId}/{id}
GET /api/v1/stl/{elementName}
GET /api/v1/users
GET /api/v1/users/{id}
GET /api/v1/users/{id}/avatar
GET /api/v1/users/{id}/logs
POST /api/admin/form/data/actions/columns
POST /api/admin/form/data/actions/delete
POST /api/admin/form/data/actions/export
POST /api/admin/form/data/actions/import
POST /api/admin/form/forms/actions/delete
POST /api/admin/form/forms/actions/down
POST /api/admin/form/forms/actions/export
POST /api/admin/form/forms/actions/import
POST /api/admin/form/forms/actions/up
POST /api/admin/form/formsLayerAdd/actions/update
POST /api/admin/form/styles/actions/delete
POST /api/admin/form/styles/actions/export
POST /api/admin/form/styles/actions/import
POST /api/admin/form/templates/actions/delete
POST /api/admin/form/templatesLayerEdit/actions/update
POST /api/admin/form/{siteId}/dataAdd/actions/deleteFile
POST /api/admin/form/{siteId}/dataAdd/actions/upload
POST /api/admin/share/settings
POST /api/admin/share/wxShare
POST /api/form/{siteId}/{formId}/actions/getForm
POST /api/form/{siteId}/{formId}/actions/sendSms
POST /api/v1/administrators/actions/login
POST /api/v1/administrators/actions/logout
POST /api/v1/administrators/actions/resetPassword
POST /api/v1/administrators/{id}/actions/delete
POST /api/v1/administrators/{id}/actions/update
POST /api/v1/captcha
POST /api/v1/captcha/actions/check
POST /api/v1/channels/{siteId}/{channelId}/actions/delete
POST /api/v1/channels/{siteId}/{channelId}/actions/update
POST /api/v1/contents
POST /api/v1/contents/actions/check
POST /api/v1/contents/{siteId}/{channelId}
POST /api/v1/contents/{siteId}/{channelId}/{id}/actions/delete
POST /api/v1/contents/{siteId}/{channelId}/{id}/actions/update
POST /api/v1/users/actions/login
POST /api/v1/users/actions/logout
POST /api/v1/users/{id}/actions/delete
POST /api/v1/users/{id}/actions/resetPassword
POST /api/v1/users/{id}/actions/update
Severity: info
Fingerprint: 5733ddf49ff49cd12ec8532c2ec8532c2ec8532c2ec8532c2ec8532c2ec8532c
Public Swagger UI/API detected at path: /swagger/index.html
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c7cf176427cf17642dd68925825adb1d925adb1d925adb1d9
Found 2 files trough .DS_Store spidering: /favicon.png /logo.png
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c1e3ea8c61e3ea8c667084c5fdc187020a67fe5a1529fc19f
Found 86 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /app/client /app/images.svg /app/plugins /app/plugins/akismet /app/plugins/duracelltomi-google-tag-manager /app/plugins/gravityforms /app/plugins/gravityforms/assets /app/plugins/gravityforms/fonts /app/plugins/gravityforms/images /app/plugins/gravityforms/js /app/plugins/gravityformsrecaptcha /app/qrcode_for_gh_88b6a5bcc908_344.jpg /app/themes /app/uploads /app/uploads/2022 /app/uploads/2022/08 /app/uploads/2022/08/01005347 /app/uploads/2022/08/01010104 /app/uploads/2022/08/01010307 /app/uploads/2022/08/01011903 /app/uploads/2022/08/05230903 /app/uploads/2022/08/07083700 /app/uploads/2022/08/23124148 /app/uploads/2022/09 /app/uploads/2022/10 /app/uploads/2022/11 /app/uploads/2022/12 /app/uploads/2023 /app/uploads/2024 /app/uploads/2025 /app/uploads/images.svg /app/video /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention /is-it-time-to-rebrand /is-your-brand-the-rebel-hero-or-lover-discovering-brand-archetypes /motto-method /motto-rebrand /mottos-brand-crush-lush-cosmetics /netflix-can-teach-leaders-staying-nimble /offline /portfolio /press /services /show /shows /speaking /talk /testimonials /the-difference-between-a-boss-and-a-leader /twelve-tips-to-leading-an-extraordinary-company /unlocking-secrets-brand-personality /video /visioncamp /why-extraordinary-rare-breed-leaders-can-come-from-anywhere-or-any-age /why-your-company-should-know-about-small-giants /work /work-list
Severity: medium
Fingerprint: 5f32cf5d6962f09c1f1b52f11f1b52f16b93b27efff4e707e0d439526e3704cf
Found 96 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /app/client /app/images.svg /app/plugins /app/plugins/akismet /app/plugins/duracelltomi-google-tag-manager /app/plugins/gravityforms /app/plugins/gravityforms/assets /app/plugins/gravityforms/fonts /app/plugins/gravityforms/images /app/plugins/gravityforms/js /app/plugins/gravityformsrecaptcha /app/qrcode_for_gh_88b6a5bcc908_344.jpg /app/themes /app/uploads /app/uploads/2022 /app/uploads/2022/08 /app/uploads/2022/08/01005347 /app/uploads/2022/08/01010104 /app/uploads/2022/08/01010307 /app/uploads/2022/08/01011903 /app/uploads/2022/08/05230903 /app/uploads/2022/08/07083700 /app/uploads/2022/08/23124148 /app/uploads/2022/09 /app/uploads/2022/09/04170536 /app/uploads/2022/09/05145302 /app/uploads/2022/09/08061459 /app/uploads/2022/09/17164805 /app/uploads/2022/09/18105536 /app/uploads/2022/09/18114256 /app/uploads/2022/09/23145107 /app/uploads/2022/09/23145112 /app/uploads/2022/09/23145119 /app/uploads/2022/09/27182209 /app/uploads/2022/10 /app/uploads/2022/11 /app/uploads/2022/12 /app/uploads/2023 /app/uploads/2024 /app/uploads/2025 /app/uploads/images.svg /app/video /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention /is-it-time-to-rebrand /is-your-brand-the-rebel-hero-or-lover-discovering-brand-archetypes /motto-method /motto-rebrand /mottos-brand-crush-lush-cosmetics /netflix-can-teach-leaders-staying-nimble /offline /portfolio /press /services /show /shows /speaking /talk /testimonials /the-difference-between-a-boss-and-a-leader /twelve-tips-to-leading-an-extraordinary-company /unlocking-secrets-brand-personality /video /visioncamp /why-extraordinary-rare-breed-leaders-can-come-from-anywhere-or-any-age /why-your-company-should-know-about-small-giants /work /work-list
Severity: medium
Fingerprint: 5f32cf5d6962f09cd07ef6a2d07ef6a2a5ce5ea3d4a45ca42aa70f9d79a59476
Found 121 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /app/client /app/images.svg /app/plugins /app/plugins/akismet /app/plugins/duracelltomi-google-tag-manager /app/plugins/gravityforms /app/plugins/gravityforms/assets /app/plugins/gravityforms/fonts /app/plugins/gravityforms/images /app/plugins/gravityforms/js /app/plugins/gravityformsrecaptcha /app/qrcode_for_gh_88b6a5bcc908_344.jpg /app/themes /app/uploads /app/uploads/2022 /app/uploads/2022/08 /app/uploads/2022/08/01005347 /app/uploads/2022/08/01010104 /app/uploads/2022/08/01010307 /app/uploads/2022/08/01011903 /app/uploads/2022/08/05230903 /app/uploads/2022/08/07083700 /app/uploads/2022/08/23124148 /app/uploads/2022/09 /app/uploads/2022/09/04170536 /app/uploads/2022/09/05145302 /app/uploads/2022/09/08061459 /app/uploads/2022/09/17164805 /app/uploads/2022/09/18105536 /app/uploads/2022/09/18114256 /app/uploads/2022/09/23145107 /app/uploads/2022/09/23145112 /app/uploads/2022/09/23145119 /app/uploads/2022/09/27182209 /app/uploads/2022/10 /app/uploads/2022/10/08083904 /app/uploads/2022/10/08130215 /app/uploads/2022/10/09100510 /app/uploads/2022/10/09100959 /app/uploads/2022/10/09101310 /app/uploads/2022/10/09101559 /app/uploads/2022/10/09111733 /app/uploads/2022/10/09124652 /app/uploads/2022/10/28163529 /app/uploads/2022/10/29215825 /app/uploads/2022/10/29222252 /app/uploads/2022/10/29223152 /app/uploads/2022/10/29224238 /app/uploads/2022/10/29224721 /app/uploads/2022/10/29230647 /app/uploads/2022/10/29232845 /app/uploads/2022/10/31180031 /app/uploads/2022/10/31205848 /app/uploads/2022/10/31210326 /app/uploads/2022/10/31220156 /app/uploads/2022/10/31232737 /app/uploads/2022/10/31233220 /app/uploads/2022/10/31233415 /app/uploads/2022/10/31234521 /app/uploads/2022/10/未命名文件夹 /app/uploads/2022/11 /app/uploads/2022/12 /app/uploads/2023 /app/uploads/2024 /app/uploads/2025 /app/uploads/images.svg /app/video /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention /is-it-time-to-rebrand /is-your-brand-the-rebel-hero-or-lover-discovering-brand-archetypes /motto-method /motto-rebrand /mottos-brand-crush-lush-cosmetics /netflix-can-teach-leaders-staying-nimble /offline /portfolio /press /services /show /shows /speaking /talk /testimonials /the-difference-between-a-boss-and-a-leader /twelve-tips-to-leading-an-extraordinary-company /unlocking-secrets-brand-personality /video /visioncamp /why-extraordinary-rare-breed-leaders-can-come-from-anywhere-or-any-age /why-your-company-should-know-about-small-giants /work /work-list
Severity: medium
Fingerprint: 5f32cf5d6962f09c8c9af8b78c9af8b70b2dc48ccda758b97fbf4c640c1c5dd2
Found 128 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /app/client /app/images.svg /app/plugins /app/plugins/akismet /app/plugins/duracelltomi-google-tag-manager /app/plugins/gravityforms /app/plugins/gravityforms/assets /app/plugins/gravityforms/fonts /app/plugins/gravityforms/images /app/plugins/gravityforms/js /app/plugins/gravityformsrecaptcha /app/qrcode_for_gh_88b6a5bcc908_344.jpg /app/themes /app/uploads /app/uploads/2022 /app/uploads/2022/08 /app/uploads/2022/08/01005347 /app/uploads/2022/08/01010104 /app/uploads/2022/08/01010307 /app/uploads/2022/08/01011903 /app/uploads/2022/08/05230903 /app/uploads/2022/08/07083700 /app/uploads/2022/08/23124148 /app/uploads/2022/09 /app/uploads/2022/09/04170536 /app/uploads/2022/09/05145302 /app/uploads/2022/09/08061459 /app/uploads/2022/09/17164805 /app/uploads/2022/09/18105536 /app/uploads/2022/09/18114256 /app/uploads/2022/09/23145107 /app/uploads/2022/09/23145112 /app/uploads/2022/09/23145119 /app/uploads/2022/09/27182209 /app/uploads/2022/10 /app/uploads/2022/10/08083904 /app/uploads/2022/10/08130215 /app/uploads/2022/10/09100510 /app/uploads/2022/10/09100959 /app/uploads/2022/10/09101310 /app/uploads/2022/10/09101559 /app/uploads/2022/10/09111733 /app/uploads/2022/10/09124652 /app/uploads/2022/10/28163529 /app/uploads/2022/10/29215825 /app/uploads/2022/10/29222252 /app/uploads/2022/10/29223152 /app/uploads/2022/10/29224238 /app/uploads/2022/10/29224721 /app/uploads/2022/10/29230647 /app/uploads/2022/10/29232845 /app/uploads/2022/10/31180031 /app/uploads/2022/10/31205848 /app/uploads/2022/10/31210326 /app/uploads/2022/10/31220156 /app/uploads/2022/10/31232737 /app/uploads/2022/10/31233220 /app/uploads/2022/10/31233415 /app/uploads/2022/10/31234521 /app/uploads/2022/10/未命名文件夹 /app/uploads/2022/11 /app/uploads/2022/11/01000009 /app/uploads/2022/11/03111154 /app/uploads/2022/11/03111248 /app/uploads/2022/11/03111444 /app/uploads/2022/11/03111544 /app/uploads/2022/11/03203017 /app/uploads/2022/11/04190336 /app/uploads/2022/11/04190339 /app/uploads/2022/11/04190342 /app/uploads/2022/11/04190345 /app/uploads/2022/11/04190730 /app/uploads/2022/11/04190925 /app/uploads/2022/11/04192858 /app/uploads/2022/11/05144435 /app/uploads/2022/11/06123701 /app/uploads/2022/11/07115820 /app/uploads/2022/11/09074850 /app/uploads/2022/11/09075251 /app/uploads/2022/11/09075853 /app/uploads/2022/11/09080712 /app/uploads/2022/11/13190309 /app/uploads/2022/11/13192612 /app/uploads/2022/11/14124107 /app/uploads/2022/11/14124348 /app/uploads/2022/11/27060857 /app/uploads/2022/11/27062431 /app/uploads/2022/11/27062723 /app/uploads/2022/11/28181125 /app/uploads/2022/11/28181508 /app/uploads/2022/11/28182052 /app/uploads/2022/11/28184035 /app/uploads/2022/12 /app/uploads/2023 /app/uploads/2024 /app/uploads/2025 /app/uploads/images.svg /app/video /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention
Severity: medium
Fingerprint: 5f32cf5d6962f09c6cdae1676cdae167245b7e7c9c8b8b49e25262b43b8942aa
Found 69 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /app/client /app/images.svg /app/plugins /app/plugins/akismet /app/plugins/duracelltomi-google-tag-manager /app/plugins/gravityforms /app/plugins/gravityforms/assets /app/plugins/gravityforms/fonts /app/plugins/gravityforms/images /app/plugins/gravityforms/js /app/plugins/gravityformsrecaptcha /app/qrcode_for_gh_88b6a5bcc908_344.jpg /app/themes /app/uploads /app/video /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention /is-it-time-to-rebrand /is-your-brand-the-rebel-hero-or-lover-discovering-brand-archetypes /motto-method /motto-rebrand /mottos-brand-crush-lush-cosmetics /netflix-can-teach-leaders-staying-nimble /offline /portfolio /press /services /show /shows /speaking /talk /testimonials /the-difference-between-a-boss-and-a-leader /twelve-tips-to-leading-an-extraordinary-company /unlocking-secrets-brand-personality /video /visioncamp /why-extraordinary-rare-breed-leaders-can-come-from-anywhere-or-any-age /why-your-company-should-know-about-small-giants /work /work-list
Severity: medium
Fingerprint: 5f32cf5d6962f09cb1c4b1dfb1c4b1df59617684b9ba04713dd8adec234abff1
Found 61 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /app/client /app/images.svg /app/plugins /app/qrcode_for_gh_88b6a5bcc908_344.jpg /app/themes /app/uploads /app/video /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention /is-it-time-to-rebrand /is-your-brand-the-rebel-hero-or-lover-discovering-brand-archetypes /motto-method /motto-rebrand /mottos-brand-crush-lush-cosmetics /netflix-can-teach-leaders-staying-nimble /offline /portfolio /press /services /show /shows /speaking /talk /testimonials /the-difference-between-a-boss-and-a-leader /twelve-tips-to-leading-an-extraordinary-company /unlocking-secrets-brand-personality /video /visioncamp /why-extraordinary-rare-breed-leaders-can-come-from-anywhere-or-any-age /why-your-company-should-know-about-small-giants /work /work-list
Severity: medium
Fingerprint: 5f32cf5d6962f09c70ba7b5770ba7b578d1fe32c0519b3d975645e04a78c11cf
Found 54 files trough .DS_Store spidering: /12716-fireside-chat-motto-great-ideas-brand-building /5-books-for-entrepreneurs-by-entrepreneurs /5-personality-traits-that-could-make-your-company-a-unicorn /5-podcasts-for-startups /5-questions-every-startup-should-answer /6-questions-to-ask-before-choosing-a-branding-agency /a-lesson-in-authenticity /abouts /app /audacious-secret-every-top-ceo-uses-win /become-one-hottest-brands-america /blog /book /branding-workshop /careers /clients /cms /cnd-cgi /contact /cultivating-courage /designers-guide-to-communicating-with-clients /desperate-innovate-hire-rare-breeds /engagements /explore /faq /five-tips-for-branding-your-culture /fortune-favors-the-bold /founder /how-to-avoid-the-5-branding-mistakes-that-can-cost-you-customers /how-to-strategically-name-your-business-and-get-peoples-attention /is-it-time-to-rebrand /is-your-brand-the-rebel-hero-or-lover-discovering-brand-archetypes /motto-method /motto-rebrand /mottos-brand-crush-lush-cosmetics /netflix-can-teach-leaders-staying-nimble /offline /portfolio /press /services /show /shows /speaking /talk /testimonials /the-difference-between-a-boss-and-a-leader /twelve-tips-to-leading-an-extraordinary-company /unlocking-secrets-brand-personality /video /visioncamp /why-extraordinary-rare-breed-leaders-can-come-from-anywhere-or-any-age /why-your-company-should-know-about-small-giants /work /work-list
Severity: low
Fingerprint: 5f32cf5d6962f09c7c3d3e457c3d3e45292274277aa56a49e5a85d3f8acf1258
Found 30 files trough .DS_Store spidering: /about /assets /assets/css /assets/icons /assets/js /assets/js/cdn.jsdelivr.net /assets/js/code.jquery.com /assets/js/gsap /comments /contact /cookie-policy /doodle-infinito /feed /fra-api /fra-api/complianz /fra-api/complianz/css /fra-api/complianz/js /fra-api/complianz/v1 /fra-api/contact-form-7 /fra-api/contact-form-7/v1 /fra-api/contact-form-7/v1/contact-forms /fra-api/oembed /fra-api/wp /news /privacy-statement /richiesta-informazioni /scrivimi /services /works /wp-content
Severity: low
Fingerprint: 5f32cf5d6962f09c7c3d3e457c3d3e45ad129d1b910a1cbfbd6c15b8a9a1179d
Found 30 files trough .DS_Store spidering: /assets.plesk.com /chi-e-fra-francesco-caporale /comments /cookie-policy-eu /doodle-infinito /feed /fra-api /fra-api/complianz /fra-api/complianz/css /fra-api/complianz/v1 /fra-api/oembed /fra-api/wp /privacy-statement-eu /products /products/feed /products/illustrazioni-personalizzate /products/prodotto-demo /products/rotolo-da-colorare-in-collaborazione-con-wunder-roll /products/stampa-general-franky-one-piece /products/stampa-il-castello-errante-di-howl /products/stampa-la-citta-incantata /products/stampa-principessa-mononoke /products/sup-jbz-limited-edition /richiesta-informazioni /scrivi-a-fra /scrivimi /services /works /wp-content /wp-includes
Severity: medium
Fingerprint: 5f32cf5d6962f09c8f03d7bd8f03d7bdabbbb08b9a84c1a5742d3ea4d96884d6
Found 38 files trough .DS_Store spidering: /assets /assets/css /assets/favicon-img /assets/fonts /assets/icons /assets/js /assets/js/gsap /assets/js/jquery /assets/js/npm /assets/js/npm/@barba /assets/js/npm/@barba/core@2.10.3 /assets/js/npm/gsap@3.12.5 /assets/js/npm/js-cookie@3.0.5 /assets/js/npm/lenis@1.2.3 /assets/js/npm/vanilla-lazyload@17.8.4 /assets/js/vimeo /uploads /uploads/company /uploads/pages /uploads/pages/about /uploads/pages/home /uploads/pages/home/0de70ba294-1715705122 /uploads/pages/home/0e020136f5-1715705108 /uploads/pages/home/31e030f120-1732035132 /uploads/pages/home/894667836c-1715705115 /uploads/pages/home/9fb38bebcb-1731566650 /uploads/pages/home/b24e5a08a2-1716146352 /uploads/pages/home/bddb745b35-1732035568 /uploads/pages/home/cast /uploads/pages/home/e19879323f-1715705112 /uploads/pages/home/f5e8e68429-1731566638 /uploads/pages/home/f61571f867-1715705109 /uploads/pages/services /uploads/pages/work /uploads/plugins /uploads/svg /uploads/videos /works
Severity: low
Fingerprint: 5f32cf5d6962f09cae99eea9ae99eea97dac2af71ecf1b29ebfb41c8c83f542c
Found 23 files trough .DS_Store spidering: /assets /assets/css /assets/favicon-img /assets/fonts /assets/icons /assets/js /assets/js/gsap /assets/js/jquery /assets/js/npm /assets/js/npm/@barba /assets/js/npm/@barba/core@2.10.3 /assets/js/npm/gsap@3.12.5 /assets/js/npm/js-cookie@3.0.5 /assets/js/npm/lenis@1.2.3 /assets/js/npm/vanilla-lazyload@17.8.4 /assets/js/vimeo /uploads /uploads/company /uploads/pages /uploads/plugins /uploads/svg /uploads/videos /works
Severity: low
Fingerprint: 5f32cf5d6962f09cdafa5447dafa5447b671e3e93017925f0082dd46ea917c41
Found 18 files trough .DS_Store spidering: /assets /assets/css /assets/favicon-img /assets/fonts /assets/icons /assets/js /assets/js/gsap /assets/js/jquery /assets/js/npm /assets/js/npm/@barba /assets/js/npm/@barba/core@2.10.3 /assets/js/npm/gsap@3.12.5 /assets/js/npm/js-cookie@3.0.5 /assets/js/npm/lenis@1.2.3 /assets/js/npm/vanilla-lazyload@17.8.4 /assets/js/vimeo /uploads /works
Severity: low
Fingerprint: 5f32cf5d6962f09c684e525d684e525dcca2f42b6c43b445a5e031c467805445
Found 27 files trough .DS_Store spidering: /assets /assets/css /assets/favicon-img /assets/fonts /assets/icons /assets/js /assets/js/gsap /assets/js/jquery /assets/js/npm /assets/js/npm/@barba /assets/js/npm/@barba/core@2.10.3 /assets/js/npm/gsap@3.12.5 /assets/js/npm/js-cookie@3.0.5 /assets/js/npm/lenis@1.2.3 /assets/js/npm/vanilla-lazyload@17.8.4 /assets/js/vimeo /uploads /uploads/company /uploads/pages /uploads/pages/about /uploads/pages/home /uploads/pages/services /uploads/pages/work /uploads/plugins /uploads/svg /uploads/videos /works
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c4239b3d84239b3d808c457e07cd91e67da02c97792d18642
Found 8 files trough .DS_Store spidering: /favicon.ico /index.php /robots.txt /router.php /static /storage /upload /upload/20250118
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c2a0815492a08154985dcc27868e61a3832fd4699363ea9cc
Found 70 files trough .DS_Store spidering: /10key_v101.bin /10keysd_v101.bin /12key_v101.bin /12keyhubn3_v101.bin /12keyhubn3sd_v101.bin /12keyn0sd_v101.bin /12keysd_v101.bin /15key_v101.bin /15keysd_v101.bin /16key_v101.bin /16keyhubn2_v101.bin /16keyhubn2sd_v101.bin /16keyhubn4_v101.bin /16keyhubn4sd_v101.bin /16keysd_v101.bin /3key_v101.bin /3keysd_v101.bin /4key_v101.bin /4keysd_v101.bin /6key_v101.bin /6keyhub_v101.bin /6keyhubsd_v101.bin /6keysd_v101.bin /8key_v101.bin /8keysd_v101.bin /9key_v101.bin /9keysd_v101.bin /device /doc /doc/1.png /doc/10.png /doc/11.png /doc/12.png /doc/2.png /doc/21.png /doc/22.png /doc/23.png /doc/24.png /doc/25.png /doc/26.png /doc/27.png /doc/28.png /doc/29.png /doc/3.png /doc/30.png /doc/31.png /doc/32.png /doc/4.png /doc/5.png /doc/6.png /doc/8.png /doc/9.png /home_device.png /images /images/advanced.svg /images/config.svg /images/keyboard.png /images/keyboard.svg /images/light /images/light.svg /images/lighteffect /images/macro.svg /images/performce.svg /images/wave.svg /lekker_switch.png /next.svg /rfk98_v101.bin /update.json /vercel.svg /version_101.bin
Severity: medium
Fingerprint: 5f32cf5d6962f09c8ef2655c8ef2655c64caf183c158590d30458e8a6592035c
Found 71 files trough .DS_Store spidering: /10key_v101.bin /10keysd_v101.bin /12key_v101.bin /12keyhubn3_v101.bin /12keyhubn3sd_v101.bin /12keyn0sd_v101.bin /12keysd_v101.bin /15key_v101.bin /15keysd_v101.bin /16key_v101.bin /16keyhubn2_v101.bin /16keyhubn2sd_v101.bin /16keyhubn4_v101.bin /16keyhubn4sd_v101.bin /16keysd_v101.bin /3key_v101.bin /3keysd_v101.bin /4key_v101.bin /4keysd_v101.bin /6key_v101.bin /6keyhub_v101.bin /6keyhubsd_v101.bin /6keysd_v101.bin /8key_v101.bin /8keysd_v101.bin /9key_v101.bin /9keysd_v101.bin /device /doc /doc/1.png /doc/10.png /doc/11.png /doc/12.png /doc/2.png /doc/21.png /doc/22.png /doc/23.png /doc/24.png /doc/25.png /doc/26.png /doc/27.png /doc/28.png /doc/29.png /doc/3.png /doc/30.png /doc/31.png /doc/32.png /doc/4.png /doc/5.png /doc/6.png /doc/8.png /doc/9.png /home_device.png /images /images/advanced.svg /images/config.svg /images/keyboard.png /images/keyboard.svg /images/light /images/light.svg /images/lighteffect /images/lighteffect/自定义.png /images/macro.svg /images/performce.svg /images/wave.svg /lekker_switch.png /next.svg /rfk98_v101.bin /update.json /vercel.svg /version_101.bin
Severity: medium
Fingerprint: 5f32cf5d6962f09c9150089691500896dcb07745f1cc85ab6450664c75fefffd
Found 37 files trough .DS_Store spidering: /10key_v101.bin /10keysd_v101.bin /12key_v101.bin /12keyhubn3_v101.bin /12keyhubn3sd_v101.bin /12keyn0sd_v101.bin /12keysd_v101.bin /15key_v101.bin /15keysd_v101.bin /16key_v101.bin /16keyhubn2_v101.bin /16keyhubn2sd_v101.bin /16keyhubn4_v101.bin /16keyhubn4sd_v101.bin /16keysd_v101.bin /3key_v101.bin /3keysd_v101.bin /4key_v101.bin /4keysd_v101.bin /6key_v101.bin /6keyhub_v101.bin /6keyhubsd_v101.bin /6keysd_v101.bin /8key_v101.bin /8keysd_v101.bin /9key_v101.bin /9keysd_v101.bin /device /doc /home_device.png /images /lekker_switch.png /next.svg /rfk98_v101.bin /update.json /vercel.svg /version_101.bin
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db84e0e35090adca88556953ac34559b1eb03a53c7b03a53c7
GraphQL introspection enabled at /api Types: 90 (by kind: ENUM: 2, OBJECT: 16, SCALAR: 72) Operations: - Query: Query | fields: contest, domain, problem, problems, user Directives: auth, deprecated, if, include, oneOf, skip, specifiedBy (total: 7)
Exposing Swagger/OpenAPI documentation is primarily a risk if your API has underlying security flaws, as it gives attackers a precise roadmap to find them.
Those detail every endpoint, parameter, and data model, making it easier to discover and exploit vulnerabilities like broken access control or injection points.
While a perfectly secure API mitigates the danger, protecting your documentation is a critical layer of defense that forces attackers to work without a map.
Severity: info
Fingerprint: 5733ddf49ff49cd1926e27d0926e27d0926e27d0926e27d0926e27d0926e27d0
Public Swagger UI/API detected at path: /webjars/swagger-ui/index.html
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c3af247253af247251e0762cd3127e62e848dd348dffb056d
Found 9 files trough .DS_Store spidering: /admin /admin/images /admin/js /admin/tree /admin/tree/css /admin/tree/js /css /mobile /uploads
Severity: low
Fingerprint: 5f32cf5d6962f09c026392ab026392abdd61918340b3734cc478f6d68f5521d1
Found 7 files trough .DS_Store spidering: /admin /admin/images /admin/js /admin/tree /css /mobile /uploads
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09cc169dbbec169dbbe1968bfd10bfe6d8c8c107f92dcff434c
Found 15 files trough .DS_Store spidering: /addon /addon/htscrm /addon/shop /admin /install /install/css /install/font /install/img /install/js /static /static/font /static/resource /upload /wap /web
Severity: low
Fingerprint: 5f32cf5d6962f09cccdd54a0ccdd54a03f791c47ede514622ad72bfcc4d2847f
Found 13 files trough .DS_Store spidering: /addon /addon/htscrm /addon/shop /admin /install /install/css /install/font /install/img /install/js /static /upload /wap /web
Severity: low
Fingerprint: 5f32cf5d6962f09cec7f8772ec7f8772199af31ddf122ac53e7cd3218172aa36
Found 11 files trough .DS_Store spidering: /addon /admin /install /install/css /install/font /install/img /install/js /static /upload /wap /web
The docker registry is public and could contain private production images.
This could result in both credentials and source code leak.
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc40ebe24d6e
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc40982a8c62
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc4097a85868
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc4063162ddb
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc4091d7e7e2
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc403b2306b9
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags aboveos/bitnami-postgresql : 5 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc405580b170
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc40e5dcea17
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc40b4fd178e
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 5 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags aboveos/bitnami-postgresql : 5 tags aboveos/bitnami-redis : 4 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc408751eaf2
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags aboveos/bitnami-postgresql : 5 tags aboveos/bitnami-redis : 4 tags aboveos/bitnami-redis-exporter : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc409d29406b
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags aboveos/bitnami-postgresql : 5 tags aboveos/bitnami-redis : 4 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc4038093edd
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc40b71e6e38
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags aboveos/bitnami-postgres-exporter : 3 tags aboveos/bitnami-postgresql : 5 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf25261c0998a4b66573fa6fc40034e14e3
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 18 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424cf430ab85810672b
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424cf430ab8cc088a2f
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424cf430ab898868128
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424cf430ab882e94a82
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424cf430ab885e55264
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424393b4424393b4424
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d508db89d508db89d508db89d50
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags
Fingerprint: be48c9b1d75b7b1007ff4840c2529bf28db89d50393b4424cf430ab8cf430ab8
Found 100 image(s) in docker registry: 1panel/maxkb : 46 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43ee141311ce506d538e7974b343a53da40
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43ee141311ce506d538e7974b34c8d9dff8
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43ee141311ce506d538e7974b34a65f70e3
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 17 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e94f96fb95428054a3f1cdaae55930605
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 16 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e94f96fb95428054a3f1cdaae03561d5e
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 16 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e94f96fb95428054a3f1cdaae3f1cdaae
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 16 tags 6053537/portainer-ce : 20 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e94f96fb95428054a3f1cdaae6a9a499a
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 16 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e94f96fb95428054a3f1cdaaeaf3322a3
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 16 tags 6053537/portainer-ce : 20 tags aboveos/advplyr-audiobookshelf : 3 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/awwaawwa-pdfmathtranslate : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e94f96fb95428054a5428054a5428054a
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 16 tags
Fingerprint: be48c9b1d75b7b1007ff4840d4705ccd0c956ee639a28bf2d13daa36d13daa36
Found 100 image(s) in docker registry: 1panel/maxkb : 43 tags 1panel/openresty : 14 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 20 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8b49701e0a
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43e0905d70a9e863b61fe0fa892fe0fa892
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags
Fingerprint: be48c9b1d75b7b1007ff4840b4abf43ec1c36789dfbb4079308f0c2add22ad3c
Found 100 image(s) in docker registry: 1panel/maxkb : 42 tags 4km3/dnsmasq : 16 tags 6053537/portainer-ce : 20 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8b536b09d7
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8b87d442ae
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8b927c0567
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8bc83f82b2
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8b19cb5e60
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c5e8c502c5e8c502c
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags
Fingerprint: be48c9b1d75b7b1007ff48407b4f45733491d2eb5e8c502c3b1e6d8b34273818
Found 100 image(s) in docker registry: 1panel/maxkb : 38 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c913996ff75abd
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c913999ba478f2
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags aboveos/bitnami-openresty : 3 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c9139944f9822c
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c913991d2f6745
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c913995ab15d34
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c9139976895c72
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags aboveos/bitnami-elasticsearch : 2 tags aboveos/bitnami-mariadb : 3 tags aboveos/bitnami-mastodon : 3 tags aboveos/bitnami-minio : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c913996769d79c
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags aboveos/bitnami-apache : 2 tags aboveos/bitnami-bitnami-shell : 2 tags
Fingerprint: be48c9b1d75b7b1007ff48404f5afbcd249ab925108dbb6a31c9139931c91399
Found 100 image(s) in docker registry: 1panel/maxkb : 36 tags 4km3/dnsmasq : 17 tags 6053537/portainer-ce : 18 tags aboveos/allanpk716-chinesesubfinder : 3 tags
mirrors3.joinolares.cn 50 tools.qianjunint.com 13 lingbo.tv 7 www.yimaoyun.com 6 weikavnut108.hsgaming.cn 3 www.lskejisoft.com 3 dev.gezheyun.com 3 ipos-api.3body.com 3 www.qiuziti.com 2 api.iyylw.cn 2 chunwei666.top 2 meiyan.tech 2 lchdgas.com 2 www.lchdgas.com 2 www.meiyan.tech 2 f.jidisw.com 1 oa.jcedu.appd9.com 1 aigc.polars.cc 1 foremost.kiyoung.cn 1 nsr.itmacode.cn 1 pay.26pay.net 1 w-flac.org.cn 1 leesdog.space 1 www.iachieveall.com 1 www.hubagi.cn 1 xazxoi.cn 1 pdf.scbyd.com.cn 1 tuituihaha.com 1 api.echisoft.com 1 xlingran.com 1