Damn Vulnerable GraphQL Application is an intentionally vulnerable implementation of Facebook's GraphQL technology, to learn and practice GraphQL Security. DVGA has numerous flaws, such as Injections, Code Executions, Bypasses, Denial of Service, and more. See the full list under the Scenarios section. A public Postman collection is also available to replay solutions to the challenges. DVGA supports Beginner and Expert level game modes, which will change the exploitation difficulty.

Features

  • Resource Intensive Query Attack
  • GraphQL Introspection
  • GraphQL Interface Protection Bypass
  • GraphQL Query Weak Password Protection
  • Deep Recursion Query Attack
  • DVGA supports Beginner and Expert level game modes

Project Samples

Project Activity

See All Activity >

Categories

Security

License

MIT License

Follow Damn Vulnerable GraphQL Application

Damn Vulnerable GraphQL Application Web Site

Other Useful Business Software
Gemini 3 and 200+ AI Models on One Platform Icon
Gemini 3 and 200+ AI Models on One Platform

Access Google's best plus Claude, Llama, and Gemma. Fine-tune and deploy from one console.

Build generative AI apps with Vertex AI. Switch between models without switching platforms.
Start Free
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of Damn Vulnerable GraphQL Application!

Additional Project Details

Programming Language

JavaScript

Related Categories

JavaScript Security Software

Registered

2023-03-03