GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d62337d3d62337d3d62337d3d62337d3d62337d3d6
GraphQL introspection enabled at /api/graphql
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d65e6ca86ab49b8bda2e10490d283bd43d09054fda
GraphQL introspection enabled at /api/graphql Types: 1531 (by kind: ENUM: 176, INPUT_OBJECT: 288, INTERFACE: 23, OBJECT: 918, SCALAR: 119, UNION: 7) Operations: - Query: Query | fields: abuseReport, abuseReportLabels, auditEventDefinitions, boardList, ciApplicationSettings - Mutation: Mutation | fields: abuseReportLabelCreate, achievementsAward, achievementsCreate, achievementsDelete, achievementsRevoke - Subscription: Subscription | fields: ciPipelineStatusUpdated, issuableAssigneesUpdated, issuableDatesUpdated, issuableDescriptionUpdated, issuableLabelsUpdated Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db2337d3d65e6ca86ab49b8bda2e10490d283bd43d09054fda
GraphQL introspection enabled at /api/graphql Types: 1531 (by kind: ENUM: 176, INPUT_OBJECT: 288, INTERFACE: 23, OBJECT: 918, SCALAR: 119, UNION: 7) Operations: - Query: Query | fields: abuseReport, abuseReportLabels, auditEventDefinitions, boardList, ciApplicationSettings - Mutation: Mutation | fields: abuseReportLabelCreate, achievementsAward, achievementsCreate, achievementsDelete, achievementsRevoke - Subscription: Subscription | fields: ciPipelineStatusUpdated, issuableAssigneesUpdated, issuableDatesUpdated, issuableDescriptionUpdated, issuableLabelsUpdated Directives: deprecated, include, oneOf, skip, specifiedBy (total: 5)
WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb53ea6237e8f56bf578f56bf578f56bf578f56bf57
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.13 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb53ea6237c61090c0161090c0161090c0161090c01
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_8.9p1 Ubuntu-3ubuntu0.11 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY