sfmatt/flask-vuln-demo

By sfmatt

โ€ขUpdated 10 months ago

Intentionally vulnerable flask application

Image
Security
0

1.4K

sfmatt/flask-vuln-demo repository overview

Flask RCE Demo App

This is an intentionally vulnerable Flask application designed for Kubernetes security testing and demonstrations. It exposes a /cmd?input= endpoint that executes arbitrary shell commands via os.system(), simulating a remote code execution (RCE) flaw.

๐Ÿ”’ Warning: This image is for educational and testing purposes only. It is not safe for production use. Do not expose this container to the internet or run it in shared environments.

๐Ÿงช Use cases include:

Testing admission controllers

Demonstrating runtime enforcement tools

Modeling container breakout and exfiltration paths

Tags: root, nonroot โ€” use to test different container privilege levels.

Tag summary

Content type

Image

Digest

sha256:ffbb4b77eโ€ฆ

Size

52 MB

Last updated

10 months ago

docker pull sfmatt/flask-vuln-demo