Which is the top risk in the OWASP Top 10?
- A Broken Access Control
- B Injection
- C Cryptographic Failures
- D Security Misconfiguration
Answer
Broken Access Control
It covers users reaching data or functions they should not. Object-level authorisation checks are the most commonly missed control.





