Welcome to the training ground. There are 5 intentional vulnerabilities here.
Search for something. The strict sanitization might be missing...
View and Post Comments. Be careful what you read.
Ping a server to check connectivity.
Admin Dashboard. (Only for 'admin' role).
Hint: check your cookies.