id: java-melody-exposed info: name: JavaMelody Monitoring Exposed author: dhiyaneshDK severity: medium requests: - method: GET path: - '{{BaseURL}}/monitoring' - '{{BaseURL}}/..%3B/monitoring' matchers-condition: and matchers: - type: word words: - 'Monitoring JavaMelody on' - type: status status: - 200