Vulnerable Environments

Browse our collection of pre-built vulnerable environments for security research and education. Each environment is containerized with Docker and comes with detailed documentation.

9 Results in Expression Injection

RCEExpression Injection

GeoServer Unauthenticated Remote Code Execution in Evaluating Property Name Expressions

Explore the GeoServer Unauthenticated Remote Code Execution in Evaluating Property Name Expressions vulnerability and learn how to exploit it.

CVE-2024-36401
Created 9 months ago
RCEExpression Injection

Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection

Explore the Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection vulnerability and learn how to exploit it.

CVE-2023-22527
Created a year ago
RCEExpression Injection

Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection

Explore the Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection vulnerability and learn how to exploit it.

CVE-2022-26134
Created 3 years ago
RCEExpression InjectionFramework

Spring Cloud Function SpEL Expression Command Injection

Explore the Spring Cloud Function SpEL Expression Command Injection vulnerability and learn how to exploit it.

CVE-2022-22963
Created 3 years ago
RCEExpression InjectionFramework

Spring Cloud Gateway Actuator API SpEL Expression Injection Command Execution

Explore the Spring Cloud Gateway Actuator API SpEL Expression Injection Command Execution vulnerability and learn how to exploit it.

CVE-2022-22947
Created 3 years ago
RCEExpression Injection

Atlassian Confluence Webwork Pre-Auth OGNL Injection Leads to RCE

Explore the Atlassian Confluence Webwork Pre-Auth OGNL Injection Leads to RCE vulnerability and learn how to exploit it.

CVE-2021-26084
Created 4 years ago
RCEExpression Injection

Apache Unomi Expression Language Injection RCE

Explore the Apache Unomi Expression Language Injection RCE vulnerability and learn how to exploit it.

CVE-2020-13942
Created 4 years ago
RCEExpression Injection

Apache Solr Remote Code Execution Via Velocity Template

Explore the Apache Solr Remote Code Execution Via Velocity Template vulnerability and learn how to exploit it.

CVE-2019-17558
Created 5 years ago
RCEExpression InjectionDatabase

ElasticSearch Groovy Sandbox Bypass and Remote Code Execution

Explore the ElasticSearch Groovy Sandbox Bypass and Remote Code Execution vulnerability and learn how to exploit it.

CVE-2015-1427
Created 8 years ago