RewardNest 9.1 — Deliberately Vulnerable Dezhkav Target
Authorized scanner testing only. All data in these routes is synthetic.

Reward search — string SQL injection

Query: SELECT id,title,description,points,owner_id FROM rewards WHERE title LIKE '%wallet%' OR description LIKE '%wallet%' ORDER BY id

idtitledescriptionpointsowner_id
1Daily Wallet BoostClaim a small wallet bonus252
DEZHKAV AUTHORIZED VULNERABLE TARGET Open vulnerability catalog