Skip to main content

OWASP Juice Shop

$ tldr TryHackMe · Walkthrough · Easy

Description

This room uses the Juice Shop vulnerable web application to learn how to identify and exploit common web application vulnerabilities.

Solve the room

Resources by skill

SQL Injection · AS-REP Roasting · Remote Code Execution (RCE) · Cross-Site Scripting (XSS)

Comments & tips

Solved this room a different way? Share it here — comments live in GitHub Discussions.
Last updated: 2026-05-09