Internet-exposed
Posture
critical
1
high
2
medium
6
low
3
Ownership
Findings (13)
low
Hardcoded AWS access key in source
DependabotSCA
open
9.4
medium
Log4Shell vulnerable dependency
OWASP ZAPDAST
open
8.8
high
SQL Injection in user-input handler
SemgrepSAST
triaged
5.8
medium
Path traversal in file download endpoint
Burp SuiteDAST
triaged
9.9
medium
Excessive Kubernetes RBAC privileges
SemgrepSAST
open
6.5
info
Excessive Kubernetes RBAC privileges
DependabotSCA
triaged
4.7
medium
Open Redis without auth
CheckmarxSAST
false positive
7.7
critical
SQL Injection in user-input handler
Burp Pro PenTestPenTest
open
4.7
medium
Missing rate limiting on /login
GitleaksSecrets
triaged
8.9
medium
S3 bucket publicly readable
Cloudflare WAFWAF
open
9.7
low
Open Redis without auth
Cloudflare WAFWAF
open
4.7