Labs & practice targets
Lab · web-app

Extreme Vulnerable Node Application (xvna)

Node/Express/MongoDB app covering OWASP Top 10 injection, NoSQLi and OS command injection for app-security learning.

Use responsibly

Test only systems you own or are explicitly authorized to test. Unauthorized testing is illegal.

More labs & practice targets