Just got a Mail from them and on my site it was php info.php that was public. I have deleted it now. Not that dangerous but anywayโฆ
This information includes the PHP version, server details, loaded extensions, environment variables, and more. An attacker can use this data to identify weaknesses in the server configuration and potentially craft specific attacks against the server.