Description
The web application uses Symfony framework. Symfony Profiler is enabled and accessible. It leads to disclosure of sensitive information about the web application.
Remediation
Disable the Profiler or restrict access to it
References
Related Vulnerabilities
Plone CMS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-4042)
WordPress 5.0.x Multiple Vulnerabilities (5.0 - 5.0.19)
File Content Disclosure in Action View
WordPress Plugin Helpful Information Disclosure (4.5.25)
WordPress Plugin Health Check & Troubleshooting Arbitrary File Disclosure (1.2.3)