Skip to content
#

vulnerable-app

Here are 51 public repositories matching this topic...

vucsa

Vulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is written in Java (with JavaFX graphical user interface) and contains multiple challenges including SQL injection, RCE, XML vulnerabilities and more.

  • Updated Sep 9, 2023
  • Java
voltmart-pentest-lab

Self-hosted Dockerized pentest lab: five intentionally-vulnerable apps (store, bank, finance, SaaS + a dedicated AI/LLM lab) — 280+ vulns across OWASP Top 10 & the full LLM Top 10. The AI is a built-in deterministic offline engine: NO model, NO API key. A modern DVWA / Juice Shop alternative.

  • Updated Jun 20, 2026
  • PHP

Improve this page

Add a description, image, and links to the vulnerable-app topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the vulnerable-app topic, visit your repo's landing page and select "manage topics."

Learn more