GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37177ace9f09db3cb010c67856d0e8d142cb0e6b6
GraphQL introspection enabled at /graphql Types: 798 (by kind: ENUM: 74, INPUT_OBJECT: 190, INTERFACE: 31, OBJECT: 497, SCALAR: 5, UNION: 1) Operations: - Query: Query | fields: CmsSitemapData, LabelRules, attributesForm, attributesList, availableStores - Mutation: Mutation | fields: ProductAlertNotifyInStock, addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37177ace9f09db3cb010c67856d0e8d142cb0e6b6
GraphQL introspection enabled at /graphql Types: 798 (by kind: ENUM: 74, INPUT_OBJECT: 190, INTERFACE: 31, OBJECT: 497, SCALAR: 5, UNION: 1) Operations: - Query: Query | fields: CmsSitemapData, LabelRules, attributesForm, attributesList, availableStores - Mutation: Mutation | fields: ProductAlertNotifyInStock, addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa374c2942e74c2942e74c2942e74c2942e74c2942e
GraphQL introspection enabled at /graphql Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa37177ace9f09db3cb010c67856d0e8d142cb0e6b6
GraphQL introspection enabled at /graphql Types: 798 (by kind: ENUM: 74, INPUT_OBJECT: 190, INTERFACE: 31, OBJECT: 497, SCALAR: 5, UNION: 1) Operations: - Query: Query | fields: CmsSitemapData, LabelRules, attributesForm, attributesList, availableStores - Mutation: Mutation | fields: ProductAlertNotifyInStock, addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart Directives: deprecated, include, oneOf, skip (total: 4)
Open service 207.120.37.236:443 · warranty.irco.com
2026-01-28 03:02
HTTP/1.1 302 Found Date: Wed, 28 Jan 2026 03:02:04 GMT Content-Length: 0 Connection: close Set-Cookie: JSESSIONID=b2FDXIspfAc-Jcnk7sMS5uZpe0jsI2r_R2Lq8hDy.ircoprodapp02; path=/; HttpOnly X-Permitted-Cross-Domain-Policies: master-only X-Download-Options: noopen X-XSS-Protection: 1; mode=block X-Frame-Options: SAMEORIGIN Location: https://warranty.irco.com/pages/csrfError.jsp?_csrfTWMSToken=X4IJ-T3Q3-0NJJ-8OUY-00CU-BNTT-IDFB-NBWC Referrer-Policy: no-referrer Content-Security-Policy: default-src https: http:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https: http:; style-src http: https: 'unsafe-inline'; img-src 'self' data: http: https:; connect-src http: https: ws:; Strict-Transport-Security: max-age=63072000; includeSubDomains; X-Content-Type-Options: nosniff Set-Cookie: BIGipServerIRCOPROD_8080=!fwV9HSLRdLZyJjT8wS6uccPTMCQUslrGvXYD/Sc1CObLNhDKVttWMbBlPT+TApJBzSULjKQCYBrRow==; path=/; Httponly; Secure X-Request-ID: 0cb4b77f4df9405ff06eafb2005dbfc6 section-io-id: 1297be7d94beac9862fd49f20f2c03c9
Open service 207.120.37.236:80 · shop.nowistsociety.org
2026-01-26 12:09
HTTP/1.1 403 Forbidden Date: Mon, 26 Jan 2026 12:09:08 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 5413514 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 8df00a44128796cbcde60108018cfbdf Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:443 · shop.nowistsociety.org
2026-01-26 12:09
HTTP/1.1 403 Forbidden Date: Mon, 26 Jan 2026 12:09:08 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 4560346 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: d46875327ef942f453cf90d54b4cac4d Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:443 · www.rawcreativehealing.com
2026-01-25 22:50
HTTP/1.1 403 Forbidden Date: Sun, 25 Jan 2026 22:50:02 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 2602008 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 3acdc9b72351eb843d4c8c8dc9cd9c4b Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:80 · www.rawcreativehealing.com
2026-01-25 22:50
HTTP/1.1 403 Forbidden Date: Sun, 25 Jan 2026 22:50:03 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 47486386 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 5ef61f632a2c475d86cb095a892476cf Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:443 · www.klbentertainmentja.com
2026-01-23 08:21
HTTP/1.1 403 Forbidden Date: Fri, 23 Jan 2026 08:21:16 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 41582635 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 137cc4faa03302b7455b2a9b81626ecf Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:80 · www.klbentertainmentja.com
2026-01-23 08:21
HTTP/1.1 403 Forbidden Date: Fri, 23 Jan 2026 08:21:14 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 44538139 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 12843eec11fb42a76f2b883f8fe6701b Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:443 · www.monolotus.store
2026-01-22 22:44
HTTP/1.1 403 Forbidden Date: Thu, 22 Jan 2026 22:44:05 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 35989836 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 2f4cffedd75ac316e974dc560ea7817a Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:80 · www.monolotus.store
2026-01-22 22:44
HTTP/1.1 403 Forbidden Date: Thu, 22 Jan 2026 22:44:05 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 35989827 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 75c30a4a555362c7dee3c406dcd73475 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:443 · cleeng-api.fanreachdata.io
2026-01-22 12:08
HTTP/1.1 403 Forbidden
Date: Thu, 22 Jan 2026 12:08:12 GMT
Content-Type: application/json
Content-Length: 42
Connection: close
x-amz-apigw-id: XlfvFH0ioAMERfw=
x-amzn-RequestId: f25a881d-11f7-4dd2-9eff-c7ee8a7e482a
x-amzn-ErrorType: MissingAuthenticationTokenException
X-Cache: Error from cloudfront
Via: 1.1 069b2b234138c5f3cf273203b46dc08c.cloudfront.net (CloudFront)
X-Amz-Cf-Pop: BUD50-P1
X-Amz-Cf-Id: Zb0YsjRBRD7UyEsW6Llm9dlk4RqM5anEd_ChmwLaj_HvR-cnufHbUw==
X-Varnish: 10686757
Age: 0
Via: 1.1 varnish (Varnish/6.6)
section-io-cache: Miss
section-io-id: 02e331a97be102513e693a52d483dffc
{"message":"Missing Authentication Token"}
Open service 207.120.37.236:80 · cleeng-api.fanreachdata.io
2026-01-22 12:08
HTTP/1.1 301 Moved Permanently Date: Thu, 22 Jan 2026 12:08:12 GMT Content-Type: text/html Content-Length: 167 Connection: close Location: https://ea1hrji6b4.execute-api.us-east-1.amazonaws.com/production/ X-Cache: Redirect from cloudfront Via: 1.1 3694c3d6ed1410ad8f4d8f79e37ad80a.cloudfront.net (CloudFront) X-Amz-Cf-Pop: BUD50-P1 X-Amz-Cf-Id: fdF470jRGwLDNKzvGZzz3mmjMo9fS2cv1n-b-mypQ8iB9-4c8P-O7w== X-Varnish: 10686753 Age: 0 Via: 1.1 varnish (Varnish/6.6) section-io-cache: Miss section-io-id: c96142fb779006c9b2698c113bed9f11 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>CloudFront</center> </body> </html>
Open service 207.120.37.236:80 · www.fkntsu.com
2026-01-11 08:51
HTTP/1.1 403 Forbidden Date: Sun, 11 Jan 2026 08:51:08 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 3159463 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 23f3cc43f7b8241ce4aa9f7f0edb3737 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:443 · www.fkntsu.com
2026-01-11 08:51
HTTP/1.1 403 Forbidden Date: Sun, 11 Jan 2026 08:51:07 GMT Content-Type: text/html Content-Length: 118 Connection: close X-Varnish: 3118799 Age: 0 Via: 1.1 varnish (Varnish/6.3) section-io-cache: Miss section-io-id: 012f426509c9149fa15eee0217ddd223 Page title: 403 Forbidden <html> <head><title>403 Forbidden</title></head> <body> <center><h1>403 Forbidden</h1></center> </body> </html>
Open service 207.120.37.236:80 · newhomesource.com
2026-01-05 16:40
HTTP/1.1 403 Forbidden
Date: Mon, 05 Jan 2026 16:40:36 GMT
Content-Type: text/html
Content-Length: 4171
Connection: close
Vary: Accept-Encoding
Set-Cookie: _pxhd=29b842d5b60ea613b37d5f2174256e2f25383d68484822dbfa229732b4920c98:42f3c7bb-ea55-11f0-9511-5a919457f180;Max-Age=31536000; Path=/
section-io-id: 367200fd45672f84210562f7772bb546
Page title: Access to this page has been denied
<!DOCTYPE html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width, initial-scale=1"><meta name="description" content="px-captcha"><title>Access to this page has been denied</title></head><body><script>window._pxVid='';window._pxUuid='42f3c655-ea55-11f0-9511-848d6562b7dc';window._pxAppId='PXoYFHOx4Z';window._pxHostUrl='/oYFHOx4Z/xhr';window._pxCustomLogo='https://beta-nhs-static-secure.akamaized.net/GlobalResources14/NewHomeSource/images/NewHomeSource_logo@2x.png';window._pxJsClientSrc='/oYFHOx4Z/init.js';window._pxFirstPartyEnabled=true;var script=document.createElement('script');script.src='/oYFHOx4Z/captcha/PXoYFHOx4Z/captcha.js?a=c&u=42f3c655-ea55-11f0-9511-848d6562b7dc&v=&m=0';document.head.appendChild(script);script.onerror=function(){script=document.createElement('script');script.src='https://captcha.px-cloud.net/PXoYFHOx4Z/captcha.js?a=c&u=42f3c655-ea55-11f0-9511-848d6562b7dc&v=&m=0';script.onerror=window._pxDisplayErrorMessage;document.head.appendChild(script)};window._pxDisplayErrorMessage=function(){var e=document.createElement('style');e.innerText='@import url(https://fonts.googleapis.com/css2?family=Roboto:ital,wght@0,100;0,300;0,400;0,500;0,700;0,900;1,100;1,300;1,400;1,500;1,700;1,900&display=swap);body{background-color:#fafbfc}.px-captcha-error-container{position:fixed;height:340px;background-color:#fff;font-family:Roboto,sans-serif}.px-captcha-error-header{color:#f0f1f2;font-size:29px;margin:67px 0 33px;font-weight:500;line-height:.83;text-align:center}.px-captcha-error-message{color:#f0f1f2;font-size:18px;margin:0 0 29px;line-height:1.33;text-align:center}.px-captcha-error-button{text-align:center;line-height:48px;width:253px;margin:auto;border-radius:50px;border:solid 1px #f0f1f2;font-size:20px;color:#f0f1f2}.px-captcha-error-wrapper{margin:18px 0 0}div.px-captcha-error{margin:auto;text-align:center;width:400px;height:30px;font-size:12px;background-color:#fcf0f2;color:#ce0e2d}img.px-captcha-error{margin:6px 8px -2px 0}.px-captcha-error-refid{border-top:solid 1px #f0eeee;height:27px;margin:13px 0 0;border-radius:0 0 3px 3px;background-color:#fafbfc;font-size:10px;line-height:2.5;text-align:center;color:#b1b5b8}@media (min-width:620px){.px-captcha-error-container{width:530px;top:50%;left:50%;margin-top:-170px;margin-left:-265px;border-radius:3px;box-shadow:0 2px 9px -1px rgba(0,0,0,.13)}}@media (min-width:481px) and (max-width:620px){.px-captcha-error-container{width:85%;top:50%;left:50%;margin-top:-170px;margin-left:-42.5%;border-radius:3px;box-shadow:0 2px 9px -1px rgba(0,0,0,.13)}}@media (max-width:480px){body{background-color:#fff}.px-captcha-error-header{color:#f0f1f2;font-size:29px;margin:55px 0 33px}.px-captcha-error-container{width:530px;top:50%;left:50%;margin-top:-170px;margin-left:-265px}.px-captcha-error-refid{position:fixed;width:100%;left:0;bottom:0;border-radius:0;font-size:14px;line-height:2}}@media (max-width:390px){div.px-captcha-error{font-size:10px}.px-captcha-error-refid{font-size:11px;line-height:2.5}}';document.head.appendChild(e);var r=document.createElement('div');r.className='px-captcha-error-container';r.innerHTML='<div class="px-captcha-error-header">Before we continue...</div><div class="px-captcha-error-message">Press & Hold to confirm you are<br>a human (and not a bot).</div><div class="px-captcha-error-button">Press & Hold</div><div class="px-captcha-error-wrapper"><div class="px-captcha-error"><img class="px-captcha-error" src="data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABMAAAAQCAMAAADDGrRQAAAABGdBTUEAALGPC/xhBQAAAAFzUkdCAK7OHOkAAABFUExURUdwTNYELOEGONQILd0AONwALtwEL+AAL9MFLfkJSNQGLdMJLdQJLdQGLdQKLtYFLNcELdUGLdcBL9gFL88OLdUFLNEOLglBhT4AAAAXdFJOUwC8CqgNIRgRoAS1dWWuR4RTjzgryZpYblfkcAAAAI9JREFUGNNdj+sWhCAIhAdvqGVa1r7/oy6RZ7eaH3D4ZACBIed9wlOOMtUnSrEmZ6cHa9YAIfsbCkWrdpi/c50Bk2CO9mNLdMAu03wJA3HpEnfpxbyOg6ruyx8JJi6KNstnslp1dbPd9GnqmuYq7mmcv1zjnbQw8cV0xzkqo+fX1zkjUOO7wnrInUTxJiruC3vtBNRoQQn2AAAAAElFTkSuQmCC">Please check your internet connection or disable your ad-blocker.</div></div><div class="px-captcha-error-refid">Reference ID '+wi
Open service 207.120.37.236:443 · newhomesource.com
2026-01-05 16:40
HTTP/1.1 403 Forbidden
Date: Mon, 05 Jan 2026 16:40:36 GMT
Content-Type: text/html
Content-Length: 4171
Connection: close
Vary: Accept-Encoding
Set-Cookie: _pxhd=da51a54ed3cb96738760fd36b003ddd18da8c95b0fd2ed619122c571e8c1368d:43090dc5-ea55-11f0-90b1-c678fdedfe04;Max-Age=31536000; Path=/
section-io-id: e05cabd1660418a4d061b66a83cfe8e8
Page title: Access to this page has been denied
<!DOCTYPE html><html lang="en"><head><meta charset="utf-8"><meta name="viewport" content="width=device-width, initial-scale=1"><meta name="description" content="px-captcha"><title>Access to this page has been denied</title></head><body><script>window._pxVid='';window._pxUuid='43090c6b-ea55-11f0-90b1-12468adf722a';window._pxAppId='PXoYFHOx4Z';window._pxHostUrl='/oYFHOx4Z/xhr';window._pxCustomLogo='https://beta-nhs-static-secure.akamaized.net/GlobalResources14/NewHomeSource/images/NewHomeSource_logo@2x.png';window._pxJsClientSrc='/oYFHOx4Z/init.js';window._pxFirstPartyEnabled=true;var script=document.createElement('script');script.src='/oYFHOx4Z/captcha/PXoYFHOx4Z/captcha.js?a=c&u=43090c6b-ea55-11f0-90b1-12468adf722a&v=&m=0';document.head.appendChild(script);script.onerror=function(){script=document.createElement('script');script.src='https://captcha.px-cloud.net/PXoYFHOx4Z/captcha.js?a=c&u=43090c6b-ea55-11f0-90b1-12468adf722a&v=&m=0';script.onerror=window._pxDisplayErrorMessage;document.head.appendChild(script)};window._pxDisplayErrorMessage=function(){var e=document.createElement('style');e.innerText='@import url(https://fonts.googleapis.com/css2?family=Roboto:ital,wght@0,100;0,300;0,400;0,500;0,700;0,900;1,100;1,300;1,400;1,500;1,700;1,900&display=swap);body{background-color:#fafbfc}.px-captcha-error-container{position:fixed;height:340px;background-color:#fff;font-family:Roboto,sans-serif}.px-captcha-error-header{color:#f0f1f2;font-size:29px;margin:67px 0 33px;font-weight:500;line-height:.83;text-align:center}.px-captcha-error-message{color:#f0f1f2;font-size:18px;margin:0 0 29px;line-height:1.33;text-align:center}.px-captcha-error-button{text-align:center;line-height:48px;width:253px;margin:auto;border-radius:50px;border:solid 1px #f0f1f2;font-size:20px;color:#f0f1f2}.px-captcha-error-wrapper{margin:18px 0 0}div.px-captcha-error{margin:auto;text-align:center;width:400px;height:30px;font-size:12px;background-color:#fcf0f2;color:#ce0e2d}img.px-captcha-error{margin:6px 8px -2px 0}.px-captcha-error-refid{border-top:solid 1px #f0eeee;height:27px;margin:13px 0 0;border-radius:0 0 3px 3px;background-color:#fafbfc;font-size:10px;line-height:2.5;text-align:center;color:#b1b5b8}@media (min-width:620px){.px-captcha-error-container{width:530px;top:50%;left:50%;margin-top:-170px;margin-left:-265px;border-radius:3px;box-shadow:0 2px 9px -1px rgba(0,0,0,.13)}}@media (min-width:481px) and (max-width:620px){.px-captcha-error-container{width:85%;top:50%;left:50%;margin-top:-170px;margin-left:-42.5%;border-radius:3px;box-shadow:0 2px 9px -1px rgba(0,0,0,.13)}}@media (max-width:480px){body{background-color:#fff}.px-captcha-error-header{color:#f0f1f2;font-size:29px;margin:55px 0 33px}.px-captcha-error-container{width:530px;top:50%;left:50%;margin-top:-170px;margin-left:-265px}.px-captcha-error-refid{position:fixed;width:100%;left:0;bottom:0;border-radius:0;font-size:14px;line-height:2}}@media (max-width:390px){div.px-captcha-error{font-size:10px}.px-captcha-error-refid{font-size:11px;line-height:2.5}}';document.head.appendChild(e);var r=document.createElement('div');r.className='px-captcha-error-container';r.innerHTML='<div class="px-captcha-error-header">Before we continue...</div><div class="px-captcha-error-message">Press & Hold to confirm you are<br>a human (and not a bot).</div><div class="px-captcha-error-button">Press & Hold</div><div class="px-captcha-error-wrapper"><div class="px-captcha-error"><img class="px-captcha-error" src="data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABMAAAAQCAMAAADDGrRQAAAABGdBTUEAALGPC/xhBQAAAAFzUkdCAK7OHOkAAABFUExURUdwTNYELOEGONQILd0AONwALtwEL+AAL9MFLfkJSNQGLdMJLdQJLdQGLdQKLtYFLNcELdUGLdcBL9gFL88OLdUFLNEOLglBhT4AAAAXdFJOUwC8CqgNIRgRoAS1dWWuR4RTjzgryZpYblfkcAAAAI9JREFUGNNdj+sWhCAIhAdvqGVa1r7/oy6RZ7eaH3D4ZACBIed9wlOOMtUnSrEmZ6cHa9YAIfsbCkWrdpi/c50Bk2CO9mNLdMAu03wJA3HpEnfpxbyOg6ruyx8JJi6KNstnslp1dbPd9GnqmuYq7mmcv1zjnbQw8cV0xzkqo+fX1zkjUOO7wnrInUTxJiruC3vtBNRoQQn2AAAAAElFTkSuQmCC">Please check your internet connection or disable your ad-blocker.</div></div><div class="px-captcha-error-refid">Reference ID '+wi