VulnerableApp

VulnerableApp

**OWASP VulnerableApp** is a project designed for security enthusiasts and aims to provide developers and security professionals with a platform to learn and practice Web application security vulnerabilities.

406GitHub
Description

**OWASP VulnerableApp** is a project designed for security enthusiasts and aims to provide developers and security professionals with a platform to learn and practice Web application security vulnerabilities. The application is designed to help test and evaluate the effectiveness of various vulnerability scanning tools, and is also an excellent resource for learning about and understanding common security vulnerabilities. Unlike other deliberately designed applications on the market to be vulnerable, VulnerableApp focuses on extensibility and ease of integration, making it an ideal platform for developing and testing new vulnerabilities. ###User Interface - **VulnerableApp-facade UI** provides an intuitive user interface that is easy for users to operate and learn. ###Technology used - **Java version **: Java 8 - ** Framework **: Spring Boot - ** Front-end technology **: ReactJS, JavaScript/TypeScript ###Types of vulnerabilities currently handled - JWT vulnerability - command injection - File upload vulnerability - Path traversal vulnerability - SQL injection (including error type, joint query type, and blind injection) - XSS (persistent and reflective) - XXE (XML External Entity Injection) - Open redirection - SSRF (server-side request forgery)

Screenshots
Screenshot 1
Screenshot 2
App Information
Version
0.0.1
Package Size
10.11 MB
Updated
October 10, 2025
Source Code
SasanLabs
Platform Support
PC
Keywords
Web Application Range