Skip to content
#

vulnerable-web-applications

Here are 2 public repositories matching this topic...

Language: All
Filter by language

Intentionally vulnerable Node.js REST API for benchmarking SAST, SCA, and code quality tools. Contains 30 real, functional issues across Critical/High/Medium/Low severities covering SQL injection, command injection, path traversal, IDOR, hardcoded secrets, and more. Not for production use.

  • Updated Mar 1, 2026
  • JavaScript

Improve this page

Add a description, image, and links to the vulnerable-web-applications topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the vulnerable-web-applications topic, visit your repo's landing page and select "manage topics."

Learn more