Vulnerability Discovery Center

Submit flags and learn about web application security vulnerabilities

0
Total Points
0
Unique Flags
5
Total Challenges

Submit Flag

Format: FL4G{VULNERABILITY_TYPE}

Vulnerability Challenges

Cross-Site Scripting (XSS)

High
FL4G{X55_*}

Try JavaScript injection in the search functionality or login form

SQL Injection

Critical
FL4G{5QL_*}

Try SQL injection payloads in the login form

Insecure Direct Object Reference (IDOR)

High
FL4G{1D0R_*}

Try accessing product IDs you should not have access to

Local File Inclusion (LFI)

High
FL4G{LF1_*}

Try accessing system files through directory traversal

File Upload Vulnerabilities

High
FL4G{*UPL04D*}

Try uploading files with malicious extensions or content