Purposely vulnerable Java application to help lead secure coding workshops
active 2024-03-21 → 2025-03-03 (UTC)
Activity over time
Daily event counts in the loaded window
Line chart, 348 days from 2024-03-21 to 2025-03-03. Pushes: 12 total, peak 6 in a day. Pull requests: 4 total, peak 4 in a day. Issues: 16 total, peak 6 in a day. Comments: 2 total, peak 1 in a day. Stars: 0 total, peak 0 in a day.
- Pushes
- Pull requests
- Issues
- Comments
- Stars
Stars, PRs, issues and forks are under-captured in the later part of this window. GH Archive progressively stopped capturing non-push events during 2026 — −95% or worse by the end of the window. Every series here except Pushes fades for that reason, so a decline above reflects the archive, not this repository. Pushes stay reliable throughout, so read them, and the contributor counts derived from them, as the real signal. Data health has the measurements.
Top contributors
Pushes, PRs, issues, reviews and comments — stars and forks excluded, so this is contribution rather than popularity
| Contributor | Contributions | Pushes | PRs | Comments |
|---|---|---|---|---|
| Probot-github-test-workflow | 20 | 12 | 4 | 2 |
| veracode-workflow-app-qa[bot] | 14 | 0 | 0 | 0 |
Recent activity
Latest issues, pull requests and releases
- Issue#7veracode-workflow-app-qa[bot]2025-03-03 07:46Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) ('Cross-Site Scripting (XSS)') [VID:6]
- Issue#5veracode-workflow-app-qa[bot]2025-03-03 07:46Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') ('SQL Injection') [VID:4]
- Issue#4veracode-workflow-app-qa[bot]2025-03-03 07:46Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection') [VID:3]
- Issue#2veracode-workflow-app-qa[bot]2025-03-03 07:46Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) ('Cross-Site Scripting (XSS)') [VID:1]
- Issue comment#1Probot-github-test-workflow2025-03-03 07:19Veracode Static 1
- Issue#7veracode-workflow-app-qa[bot]2024-12-17 11:39Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') [VID:89:com/scalesec/vulnado/User.java:49]
- Issue#6veracode-workflow-app-qa[bot]2024-12-17 11:39Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') [VID:78:com/scalesec/vulnado/Cowsay.java:16]
- Issue#5veracode-workflow-app-qa[bot]2024-12-12 12:03Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') ('SQL Injection') [VID:2]
- Issue#4veracode-workflow-app-qa[bot]2024-12-12 12:03Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection') [VID:1]
- Issue comment#1Probot-github-test-workflow2024-12-12 11:51Test
- Issue#2Probot-github-test-workflow2024-12-12 11:50Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection') [VID:1]
- Issue#3Probot-github-test-workflow2024-12-12 11:50Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') ('SQL Injection') [VID:2]
- Issue#3veracode-workflow-app-qa[bot]2024-12-12 11:46Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') ('SQL Injection') [VID:2]
- Issue#2veracode-workflow-app-qa[bot]2024-12-12 11:46Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') ('Command or Argument Injection') [VID:1]
- Pull request#7Probot-github-test-workflow2024-03-21 13:23
- Pull request#2Probot-github-test-workflow2024-03-21 12:56
- Issue#6veracode-workflow-app-qa[bot]2024-03-21 12:52Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) [VID:80:com/scalesec/vulnado/CowController.java:13]
- Issue#5veracode-workflow-app-qa[bot]2024-03-21 12:52Use of a Broken or Risky Cryptographic Algorithm [VID:327:com/scalesec/vulnado/Postgres.java:67]
- Issue#4veracode-workflow-app-qa[bot]2024-03-21 12:51Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') [VID:89:com/scalesec/vulnado/User.java:49]
- Issue#3veracode-workflow-app-qa[bot]2024-03-21 12:51Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') [VID:78:com/scalesec/vulnado/Cowsay.java:16]
- Pull request#2Probot-github-test-workflow2024-03-21 12:28
- Pull request#1Probot-github-test-workflow2024-03-21 12:26
Totals cover only the window loaded into ClickHouse and count events, not GitHub's lifetime totals — 0 stars here means stars gained during the window, not the repo's star count.