Description
The web application uses Laravel framework. Laravel Telescope is enabled and accessible. In production environment, it leads to disclosure of sensitive information about the web application.
Remediation
Disable the Telescope or restrict access to it
References
Related Vulnerabilities
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2044)
Atlassian Confluence information disclosure
WordPress REST API User Enumeration
WordPress Plugin MiwoFTP-File & Folder Manager Arbitrary File Download (1.0.5)
WordPress Plugin WP Custom Pages 'url' Parameter Local File Disclosure (0.5.0.1)