
A Deliberately Vulnerable Web Application built on Struts 2 (CVE-2017-5638) and Log4J (CVE-2021-44228) for testing and demonstration of OWASP Top 10 Web Application Security Risks: A06:2021-Vulnerable and Outdated Components.
This project is a Java web application using the Struts 2 framework. It is built with Maven and can be run using the Jetty server.
mvn clean install
mvn jetty:run
Open your web browser and navigate to http://localhost:8080/dvwa.
src/main/java: Contains the Java source code.src/main/resources: Contains the configuration files.src/main/webapp: Contains the web application files (JSP, HTML, CSS, JS).The Struts configuration is located in src/main/resources/struts.xml.
The Maven configuration is located in pom.xml.
This project is licensed under the MIT License - see the LICENSE file for details.