Hark mortal!
This is flask-vuln.py, a simple target application for a hacking workshop. In each case, the vulnerable parameter is name, unless specified otherwise.

Do alert(0) to win, unless specified otherwise.