Probably the most modern and sophisticated insecure web application
The SpotBugs plugin for security audits of Java web applications
OWASP Coraza WAF is a golang modsecurity compatible firewall library
The OWASP ZAP core project
Scanner detecting the use of JavaScript libraries
Handy, High performance, ModSecurity compatible Nginx firewall module
AWStats Log Analyzer
A simple Web Application Firewall docker image
Offensive Web Testing Framework (OWTF), is a framework
An Application to security test RESTful web APIs.
Web and mobile application security awareness/training platform
Find web application vulnerabilities the easy way!
an extremely buggy web app !
PHP Role Based Access Control library
Free and Open Source Browser based Security Framework
The vision: Building the best and most convenient threat model editor