A modular, deliberately vulnerable Spring Boot application where each vulnerability type comes in levels of increasing defence: SQL injection, XSS, XXE, SSRF, command injection, JWT flaws, path traversal and unrestricted file upload.
Not startedDockercommit 8df7fb2x86_64 · aarch64Secret
Exploit each vulnerability type through its levels, bypassing the defence each level adds.
The brief for this lab lives in its repository.