OWASP for Web Main topics Stored Cross Site Scripting PII data in URL XML Injection Forced Browsing Token Exposure in URL Reflected XSS Command Injection User Enumeration Clickjacking Weak Randomness SQL Injection Vertical Privilege Escalation Session Fixation Directory Traversal Horizontal Privilege Escalation Header Injection Leftover Debug Code Insecure URL Redirect Server Side Request Forgery DOM XSS Cross Site Request Forgery Components with Known Vulnerabilities .NET DotNet Security - OWASP Cheat Sheet Series
software engineering