A WordPress site (Apache, PHP 7.4, MySQL on Ubuntu 20.04) with a vulnerable plugin, named melodicmayhem.local, from XBOW's validation benchmarks (XBEN-034-24). Weakness tags: cve.
Not startedDockercommit e6f7f23x86_64 · aarch64Secret
Find the flag (FLAG{...}) hidden in the application.
The brief for this lab lives in its repository.