
secure-coding-practices-quick-reference-guide
The Secure Coding Practices Quick-reference Guide from OWASP

The Secure Coding Practices Quick-reference Guide from OWASP

The OWASP Benchmark GitHub repo has moved to: https://github.com/OWASP-Benchmark/BenchmarkJava

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Running OWASP cve-lite-cli against the pi monorepo: scan journey and key finding (vitest CVE-2026-47429).

The dependency-check repository has moved:

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse…

OWASP Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input…

OWASP Foundation Web Respository

WordPress Verification SMS with TargetSMS Plugin <= 1.5 is vulnerable to Remote Code Execution (RCE)

Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input validation,…

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Twitter vulnerable snippets

A scanner that files with compromised or untrusted code signing certificates written in python.

Vulnerability Patterns Detector for C# and VB.NET

The AI Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to…

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.