Insecure Web Application - .NET version
-
Updated
May 26, 2025 - C#
Insecure Web Application - .NET version
Several snippets of vulnerable code in different programming languages.
Insecure Web + API application with example Fortify integrations into many DevSecOps and CICD platforms
Simple example showing how Fortify scanning can be performed in Scala applications built with Maven (using the "scala-maven-plugin" from https://github.com/davidB/) or Gradle.
Sample GitHub Action workflows based on the OWASP WebGoat.NET example
Sample source code containing vulnerabilities to illustrate Fortify usage
A small demo app to demonstrate SAST Aviator functionality.
Insecure Web + API application with example SAST integrations into many DevSecOps and CICD platforms
Sample GitHub Action workflows based on the Fortify EightBall example
Intentionally vulnerable Node.js REST API for benchmarking SAST, SCA, and code quality tools. Contains 30 real, functional issues across Critical/High/Medium/Low severities covering SQL injection, command injection, path traversal, IDOR, hardcoded secrets, and more. Not for production use.
Add a description, image, and links to the vulnerable-sample-app topic page so that developers can more easily learn about it.
To associate your repository with the vulnerable-sample-app topic, visit your repo's landing page and select "manage topics."