Under active development Content is continuously updated and improved
Home / Risk Lists / OWASP Top 10

OWASP Top 10 v2025

The OWASP Top 10 is a standard awareness document for web application security risks

This is a reference tool, not an authoritative source. For official documentation, visit owasp.org.

10 risks

Access Control Risks related to access control

Authentication Risks related to authentication

Configuration Risks related to configuration

Cryptography Risks related to cryptography

Design Risks related to design

Error Handling Risks related to error handling

Input Validation Risks related to input validation

Integrity Risks related to integrity

Logging & Monitoring Risks related to logging & monitoring

Supply Chain Risks related to supply chain