Description
The Nuxt.js application is running in development mode on your production server. In the development mode, Nuxt.js includes detailed error messages, stack traces, and other debug information that can help attackers understand the inner workings of your application and design attacks more effectively.
In order to minimize the security risk, you should ensure that your Nuxt.js application is running in production mode when deployed to a live environment.
Remediation
Ensure that your Nuxt.js application is running in production mode when deployed to a live environment. This can be achieved by setting the NODE_ENV environment variable to production in your deployment scripts, or by programmatically setting the dev property to false in your Nuxt configuration file in the production environment.
References
Related Vulnerabilities
ColdFusion administrator login page publicly available
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3806)
WordPress Plugin GlotPress Information Disclosure (2.2.1)
default-src Used in Content Security Policy (CSP)
Scheme URI Detected in Content Security Policy (CSP) Directive