Description
The Kong Gateway provides API for accessing various information and configuring it. Acunetix determined that it was possible to access this API without authentication.
Remediation
Restrict access to the Kong Gateway API interface
References
Related Vulnerabilities
MyBB Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-4625)
Nuxt.js Running in Development Mode
WordPress Plugin GiveWP-Donation and Fundraising Platform Information Disclosure (2.20.2)
TYPO3 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-4900)