A demo storefront exposing four classic attack vectors, for testing WAF/edge protection before and after onboarding.
Search the catalog by ID. Vector: SQL Injection
Leave feedback on a product. Vector: Cross-Site Scripting (XSS)
Check connectivity to the shipping partner API. Vector: Command Injection
Download a past invoice PDF. Vector: Path Traversal