Damn Vulnerable GraphQL Application is an intentionally vulnerable implementation of Facebook's GraphQL technology, to learn and practice GraphQL Security. DVGA has numerous flaws, such as Injections, Code Executions, Bypasses, Denial of Service, and more. See the full list under the Scenarios section. A public Postman collection is also available to replay solutions to the challenges. DVGA supports Beginner and Expert level game modes, which will change the exploitation difficulty.
Features
- Resource Intensive Query Attack
- GraphQL Introspection
- GraphQL Interface Protection Bypass
- GraphQL Query Weak Password Protection
- Deep Recursion Query Attack
- DVGA supports Beginner and Expert level game modes
Categories
SecurityLicense
MIT LicenseFollow Damn Vulnerable GraphQL Application
Other Useful Business Software
Gemini 3 and 200+ AI Models on One Platform
Build generative AI apps with Vertex AI. Switch between models without switching platforms.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of Damn Vulnerable GraphQL Application!