id: gitlab-public-snippets info: name: GitLab public snippets author: pdteam severity: info metadata: shodan-query: http.title:"GitLab" reference: - https://gist.github.com/vysecurity/20311c29d879e0aba9dcffbe72a88b10 - https://twitter.com/intigriti/status/1375078783338876929 tags: gitlab,exposure,misconfig requests: - method: GET path: - "{{BaseURL}}/explore/snippets" - "{{BaseURL}}/-/snippets" matchers-condition: and matchers: - type: word words: - '