OWASP stands for Open Web Application Security Project community, run by cybersecurity enthusiasts.
The TOP 10 OWASP security vulnerabilities list the most prevalent vulnerabilities at the current time. The list builds readers’ awareness and understanding of the common web apps security issues. It does not mean the vulnerabilities are complete, the most severe or that they pertain to every organization. The list is a general problem statement, it changes as attacks emerge or die out.
OWASP also provides cheat sheets and open source tools that give general knowledge of how to mitigate the outlined security vulnerabilities.
The TOP 10 as of writing this post is:
- Broken Authentication.
- Secure Data Exposure.
- XML External Entities.
- Broken Access Control.
- Security misconfiguration.
- Cross Site Scripting known as XSS.
- Insecure deserialization.
- Using components with known vulnerabilities.
- Insufficient monitoring and logging.