Files

1.3 KiB

Standards - Web Application Vulnerability Triage

Primary Standards

OWASP Risk Rating Methodology

OWASP Top 10 (2021)

OWASP Web Security Testing Guide v4.2

CWE/SANS Top 25 Most Dangerous Software Weaknesses

CVSS v3.1 / v4.0

Scanner References

Tool Type Documentation
OWASP ZAP DAST https://www.zaproxy.org/docs/
Burp Suite DAST https://portswigger.net/burp/documentation
Semgrep SAST https://semgrep.dev/docs/
SonarQube SAST https://docs.sonarqube.org/
Snyk Code SAST https://docs.snyk.io/scan-with-snyk/snyk-code