juice-shop/juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
TypeScriptMIT
Issues
- 16
[⭐] CSAF Standard
#2198 opened by wurstbrot - 2
[🐛] Config option `challenges.codingChallengesEnabled` doesn't work with new ScoreBoard
#2213 opened by J12934 - 0
path-join-resolve-traversal issue
#2231 opened by chirag-palsania-1 - 6
ZAP Scan Baseline Report
#2191 opened by github-actions - 31
💢 Perform update to Angular 17
#2173 opened by bkimminich - 3
[🐛] Domain https://www.alchemy.com/ is not reachable
#2219 opened by huornlmj - 1
[🐛] Could not locate bindings file xmljs.node
#2228 opened by chkoelbl - 0
[⭐] Web Race Condition New Challenge
#2226 opened by Zeeshan12340 - 3
[🐛] Coding Challenge: 'Exfiltrate the entire DB schema definition via SQL Injection' can't be solved through login API
#2201 opened by jvmdc - 6
[⭐] Reset password with leaked token
#2175 opened by bkimminich - 0
- 14
[🚀] Option to disable danger zone challenges manually
#2174 opened by jvmdc - 0
- 13
ZAP Scan Baseline Report
#2090 opened by github-actions - 9
[⭐] Coding challenges for web3 challenges
#2091 opened by bkimminich - 6
[⭐] Steal someone address
#2160 opened by bahylol - 0
Exclude /codefixes folder from CodeQL Scan
#2176 opened by bkimminich - 2
error while instaalling
#2171 opened by Rehan919 - 2
- 2
Use median instead of average for total cheat score
#2150 opened by bkimminich - 7
XSS through 'Link Image' field in Juice Shop
#2065 opened by redhatsam09 - 9
[🐛] Remove shipping addresses for other users
#2082 opened by makarov05bm - 8
- 2
- 1
Code Injection Vulnerability Detected
#2138 opened by birtatlibaretta - 6
Migration ot PostgreSQL[🚀]
#2137 opened by nyck33 - 13
[🐛] node:internal/modules/cjs/loader:959
#2134 opened by eliassal - 0
[🐛] Missing rate limiting!
#2131 opened by birtatlibaretta - 1
- 4
[🐛] Failing API / Frisby Tests on Node.js 20
#2068 opened by J12934 - 1
a
#2126 opened by mehmetkaramaan - 0
Tracking issue for:
#2125 opened by mehmetkaramaan - 2
[🐛] Incorrect URL on the redirect allowlist
#2120 opened by tghosth - 1
Add i18n support to Web3 screens
#2089 opened by bkimminich - 1
[🐛] Fix responsive layout issues with Web3 screens
#2088 opened by bkimminich - 0
routes
#2110 opened by andreaCorreaVs - 2
- 3
📖 Dead link in README[🐛]
#2106 opened by manchicken - 10
[🐛] Juice Shop Docker image - Pod dies when unable to reach sepolia.infura.io
#2100 opened by MitchellKelly-AlphaSights - 1
[🐛] pwning.owasp-juice.shop - not found
#2098 opened by eric-nieuwland - 2
[🚀] Write tests for NFT Takeover Challenge
#2053 opened by rishabhkeshan - 1
[🐛]
#2071 opened by makarov05bm - 1
ZAP Scan Baseline Report
#2061 opened by github-actions - 2
[🚀] Secure Code Review of Juice Shop
#2074 opened by Josh-Beck - 4
[🐛] Stabilize Flaky Wallet Api Tests
#2030 opened by J12934 - 2
[🐛] Broken completion detection for challenge "Gain read access to an arbitrary local file on the web server"
#2060 opened by gyetblokrd - 1
ZAP Scan Baseline Report
#2045 opened by github-actions - 7
[🐛] Build error from flag-icons 6.9.x dependency: Can't resolve flag path for flags-icons.scss
#2047 opened by unixerius - 6
[🚀] Running Juice-shop in Raspberry Pi 4 (linux/arm/v8)
#2044 opened by doop-lan - 6