A vulnerable REST API built with Flask and an OpenAPI 3 specification, covering the OWASP API Security Top 10: broken object level authorization, mass assignment, excessive data exposure, user enumeration, SQL injection, weak JWT handling and missing rate limits.
Pas commencéDockercommit 1868f24x86_64 · aarch64Secret
Exploit the VAmPI API vulnerabilities listed in its README.
Le brief de ce lab se trouve dans son dépôt.