Vulnerable Environments
Browse our collection of pre-built vulnerable environments for security research and education. Each environment is containerized with Docker and comes with detailed documentation.
9 Results in Expression Injection
GeoServer Unauthenticated Remote Code Execution in Evaluating Property Name Expressions
Explore the GeoServer Unauthenticated Remote Code Execution in Evaluating Property Name Expressions vulnerability and learn how to exploit it.
Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection
Explore the Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection vulnerability and learn how to exploit it.
Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection
Explore the Atlassian Confluence Pre-Auth Remote Code Execution via OGNL Injection vulnerability and learn how to exploit it.
Spring Cloud Function SpEL Expression Command Injection
Explore the Spring Cloud Function SpEL Expression Command Injection vulnerability and learn how to exploit it.
Spring Cloud Gateway Actuator API SpEL Expression Injection Command Execution
Explore the Spring Cloud Gateway Actuator API SpEL Expression Injection Command Execution vulnerability and learn how to exploit it.
Atlassian Confluence Webwork Pre-Auth OGNL Injection Leads to RCE
Explore the Atlassian Confluence Webwork Pre-Auth OGNL Injection Leads to RCE vulnerability and learn how to exploit it.
Apache Unomi Expression Language Injection RCE
Explore the Apache Unomi Expression Language Injection RCE vulnerability and learn how to exploit it.
Apache Solr Remote Code Execution Via Velocity Template
Explore the Apache Solr Remote Code Execution Via Velocity Template vulnerability and learn how to exploit it.
ElasticSearch Groovy Sandbox Bypass and Remote Code Execution
Explore the ElasticSearch Groovy Sandbox Bypass and Remote Code Execution vulnerability and learn how to exploit it.