timestamp: 2024-02-20T19:24:13+05:30 url: http://127.0.0.1:8082/blog/post?postId=3&source=proxify request: header: Accept-Encoding: gzip Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: GET path: /blog/post scheme: https raw: |+ GET /blog/post?postId=3&source=proxify HTTP/1.1 Host: 127.0.0.1:8082 Accept-Encoding: gzip Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 response: header: Content-Encoding: gzip Content-Type: text/html; charset=utf-8 Date: Tue, 20 Feb 2024 13:54:13 GMT Set-Cookie: AWSALB=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/, AWSALBCORS=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/; SameSite=None; Secure, session=ymwLa8dKmWjLl43BBpQnrp5LkFZraYkp; Secure; HttpOnly; SameSite=None X-Backend: ea6c1d8c-a8e5-4bef-b8db-879bbb13cf62 X-Frame-Options: SAMEORIGIN raw: |+ HTTP/1.1 200 OK Connection: close Content-Encoding: gzip Content-Type: text/html; charset=utf-8 Date: Tue, 20 Feb 2024 13:54:13 GMT Set-Cookie: AWSALB=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/ Set-Cookie: AWSALBCORS=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/; SameSite=None; Secure Set-Cookie: session=ymwLa8dKmWjLl43BBpQnrp5LkFZraYkp; Secure; HttpOnly; SameSite=None X-Backend: ea6c1d8c-a8e5-4bef-b8db-879bbb13cf62 X-Frame-Options: SAMEORIGIN --- timestamp: 2024-02-20T19:24:13+05:30 url: http://127.0.0.1:8082/reset-password request: header: Accept-Encoding: gzip Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: GET path: /blog/post scheme: https raw: |+ POST /reset-password HTTP/1.1 Host: 127.0.0.1:8082 X-Forwarded-For: 127.0.0.1:8082 Accept-Encoding: gzip Connection: close Content-Type: application/json Content-Length: 23 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 {"password":"12345678"} response: header: Content-Encoding: gzip Content-Type: text/html; charset=utf-8 Date: Tue, 20 Feb 2024 13:54:13 GMT Set-Cookie: AWSALB=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/, AWSALBCORS=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/; SameSite=None; Secure, session=ymwLa8dKmWjLl43BBpQnrp5LkFZraYkp; Secure; HttpOnly; SameSite=None X-Backend: ea6c1d8c-a8e5-4bef-b8db-879bbb13cf62 X-Frame-Options: SAMEORIGIN raw: |+ HTTP/1.1 200 OK Connection: close Content-Encoding: gzip Content-Type: text/html; charset=utf-8 Date: Tue, 20 Feb 2024 13:54:13 GMT Set-Cookie: AWSALB=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/ Set-Cookie: AWSALBCORS=9l3X2bRs5JVQp5cO8o7xLckrdo3FZIQzbS0ga0n4ctfDApb/nn0K6AiSLLAMbG7CCDHqKOj9kQdyj6T2RzBDULszJ+2Oy8KcyuOKhFsCGVTVabnJTkVwhyXLciFt; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/; SameSite=None; Secure Set-Cookie: session=ymwLa8dKmWjLl43BBpQnrp5LkFZraYkp; Secure; HttpOnly; SameSite=None X-Backend: ea6c1d8c-a8e5-4bef-b8db-879bbb13cf62 X-Frame-Options: SAMEORIGIN --- timestamp: 2024-02-20T19:24:13+06:30 url: http://127.0.0.1:8082/user/55/profile request: header: Accept-Encoding: gzip Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: GET path: /blog/post scheme: https raw: |+ GET /user/55/profile HTTP/1.1 Host: 127.0.0.1:8082 Accept-Encoding: gzip Connection: close Content-Type: application/json User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 response: header: Content-Type: application/json; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT raw: |+ HTTP/1.1 200 OK Content-Type: application/json; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT Content-Length: 47 {"ID":75,"Name":"user","Age":30,"Role":"user"} --- timestamp: 2024-02-20T23:25:13+06:30 url: http://127.0.0.1:8082/user request: header: Accept-Encoding: gzip Connection: close Content-Type: application/json User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: POST path: /user scheme: http raw: |+ POST /user HTTP/1.1 Host: localhost:8082 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 Accept: */* Content-Length: 32 Connection: close Content-Type: application/json {"id": 7 , "name": "pdteam"} response: header: Content-Type: text/plain; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT raw: |+ HTTP/1.1 200 OK Content-Type: text/plain; charset=UTF-8 Date: Wed, 28 Feb 2024 13:58:52 GMT Content-Length: 25 User updated successfully --- timestamp: 2024-02-20T23:26:13+06:30 url: http://127.0.0.1:8082/user request: header: Accept-Encoding: gzip Connection: close Content-Type: application/x-www-form-urlencoded User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: POST path: /user scheme: http raw: |+ POST /user HTTP/1.1 Host: localhost:8082 User-Agent: curl/8.1.2 Accept: */* Content-Length: 20 Connection: close Content-Type: application/x-www-form-urlencoded id=7&name=pdteam response: header: Content-Type: text/plain; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT raw: |+ HTTP/1.1 200 OK Content-Type: text/plain; charset=UTF-8 Date: Wed, 28 Feb 2024 13:58:52 GMT Content-Length: 25 User updated successfully --- timestamp: 2024-02-20T23:26:13+06:30 url: http://127.0.0.1:8082/user request: header: Accept-Encoding: gzip Connection: close Content-Type: multipart/form-data User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: POST path: /user scheme: http raw: |+ POST /user HTTP/1.1 Host: localhost:8082 User-Agent: curl/8.1.2 Accept: */* Content-Length: 226 Connection: close Content-Type: multipart/form-data; boundary=----WebKitFormBoundary7MA4YWxkTrZu0gW ------WebKitFormBoundary7MA4YWxkTrZu0gW Content-Disposition: form-data; name="id" 7 ------WebKitFormBoundary7MA4YWxkTrZu0gW Content-Disposition: form-data; name="name" pdteam ------WebKitFormBoundary7MA4YWxkTrZu0gW-- response: header: Content-Type: text/plain; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT raw: |+ HTTP/1.1 200 OK Content-Type: text/plain; charset=UTF-8 Date: Wed, 28 Feb 2024 13:58:52 GMT Content-Length: 25 User updated successfully --- --- timestamp: 2024-02-20T19:25:13+06:30 url: http://127.0.0.1:8082/blog/posts request: header: Accept-Encoding: gzip Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 Cookie: session=ymwLa8dKmWjLl43BBpQnrp5LkFZraYkp; lang=en method: GET path: /blog/posts scheme: http raw: |+ GET /blog/posts HTTP/1.1 Host: 127.0.0.1:8082 Accept-Encoding: gzip Cookie: session=ymwLa8dKmWjLl43BBpQnrp5LkFZraYkp; lang=en Connection: close Content-Type: application/json User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 response: header: Content-Type: application/json; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT raw: |+ HTTP/1.1 200 OK Content-Type: application/json; charset=UTF-8 Date: Wed, 28 Feb 2024 13:58:52 GMT Content-Length: 218 [{"ID":1,"Title":"The Joy of Programming","Content":"Programming is like painting a canvas with logic.","Lang":"en"},{"ID":2,"Title":"A Journey Through Code","Content":"Every line of code tells a story.","Lang":"en"}] --- timestamp: 2024-02-20T23:26:13+06:30 url: http://127.0.0.1:8082/user request: header: Accept-Encoding: gzip Connection: close Content-Type: application/xml User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: POST path: /user scheme: http raw: |+ POST /user HTTP/1.1 Host: localhost:8082 User-Agent: curl/8.1.2 Accept: */* Content-Length: 76 Connection: close Content-Type: application/xml 7 pdteam response: header: Content-Type: text/plain; charset=UTF-8 Date: Tue, 27 Feb 2024 18:46:44 GMT raw: |+ HTTP/1.1 200 OK Content-Type: text/plain; charset=UTF-8 Date: Wed, 28 Feb 2024 13:58:52 GMT Content-Length: 25 User updated successfully --- timestamp: 2024-02-20T19:24:13+05:32 url: http://127.0.0.1:8082/host-header-lab request: header: Accept-Encoding: gzip Authorization: Bearer 3x4mpl3t0k3n Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 host: 127.0.0.1:8082 method: POST path: /catalog/product scheme: https raw: |+ GET /host-header-lab HTTP/1.1 Host: 127.0.0.1:8082 Authorization: Bearer 3x4mpl3t0k3n Accept-Encoding: gzip Connection: close User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 11_1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/87.0.4280.88 Safari/537.36 response: header: Content-Encoding: gzip Content-Type: text/html; charset=utf-8 Date: Tue, 20 Feb 2024 13:54:13 GMT Set-Cookie: AWSALB=Rzm8ZSSL/yQq1mG1SdGmWAahqexWvOcjIhlNKm0wBnk4jvY3Hdy3mRc+NKoMRNJ2RW+FNbtRk7DX+itnfzjMvKNpwtLWWAafxeKybc+v351g0MsLycRNQF5fG78y; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/, AWSALBCORS=Rzm8ZSSL/yQq1mG1SdGmWAahqexWvOcjIhlNKm0wBnk4jvY3Hdy3mRc+NKoMRNJ2RW+FNbtRk7DX+itnfzjMvKNpwtLWWAafxeKybc+v351g0MsLycRNQF5fG78y; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/; SameSite=None; Secure, session=fFcCUjmQguQy820Y8xrnRypp3KBWSPk6; Secure; HttpOnly; SameSite=None X-Backend: 2235790d-f089-4324-8ac0-f64cc96f2460 X-Frame-Options: SAMEORIGIN body: | Fruit Overlays - Product - Gin & Juice Shop

This is a deliberately vulnerable web application designed for testing web vulnerability scanners. Put your scanner to the test!

Fruit Overlays

$92.79

When it comes to hospitality presentation is key, and nothing looks better than a well-dressed drink. We know gin fans like plenty of fruit in their glasses, some a bit more than they really need, but hey ho, each to their own. But what about fruit not inside your glass, but classily arranged over your glass? In comes Fruitus overlayus, the best way to jazz up any party. The possible colour combinations are endless, just picture that! All you need is a nice selection of small fruits, or maybe even use our Fruit Curliwurlier to add a dash of even more drama, and we will do the rest. This one is a real winner at our Christmas and New year’s outings, give it a go and turn some heads.

CONTENTS: 12 cocktail sticks.

HOW TO USE: Let your creative juices flow (Pun intended), and spend some time working on your colour coordination, try not to think too much about it, just do it! Pick up one of the Fruitus overlayus sticks and carefully slide the fruit along until there is a small space on either end of the stick. Balance the stick across the rim of the glass. Ta-Da! Your first fruit overlay. Keep going until you have as many overlays as you need. You can always purchase more at any time with a discount on bulk buys.

View cart
raw: |+ HTTP/1.1 200 OK Connection: close Content-Encoding: gzip Content-Type: text/html; charset=utf-8 Date: Tue, 20 Feb 2024 13:54:13 GMT Set-Cookie: AWSALB=Rzm8ZSSL/yQq1mG1SdGmWAahqexWvOcjIhlNKm0wBnk4jvY3Hdy3mRc+NKoMRNJ2RW+FNbtRk7DX+itnfzjMvKNpwtLWWAafxeKybc+v351g0MsLycRNQF5fG78y; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/ Set-Cookie: AWSALBCORS=Rzm8ZSSL/yQq1mG1SdGmWAahqexWvOcjIhlNKm0wBnk4jvY3Hdy3mRc+NKoMRNJ2RW+FNbtRk7DX+itnfzjMvKNpwtLWWAafxeKybc+v351g0MsLycRNQF5fG78y; Expires=Tue, 27 Feb 2024 13:54:13 GMT; Path=/; SameSite=None; Secure Set-Cookie: session=fFcCUjmQguQy820Y8xrnRypp3KBWSPk6; Secure; HttpOnly; SameSite=None X-Backend: 2235790d-f089-4324-8ac0-f64cc96f2460 X-Frame-Options: SAMEORIGIN