owasp-ref

Provides quick reference to OWASP Top 10 and API Top 10 vulnerabilities with CWE mappings.

7|1|Updated Apr 14, 2026
One-click install
npx skills add https://github.com/ArianHobson333/claude-bug-bounty-stack --skill owasp-ref
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: owasp-ref
Source: https://github.com/ArianHobson333/claude-bug-bounty-stack/tree/main/skills/owasp-ref
Command: npx skills add https://github.com/ArianHobson333/claude-bug-bounty-stack --skill owasp-ref

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill provides a quick reference to the OWASP Top 10 and API Top 10 security vulnerabilities, aiding in identifying and mitigating potential security issues during code review or bug bounty hunting.

Core Features & Use Cases

  • Quick Reference: Offers a concise summary of the OWASP Top 10 and API Top 10 vulnerabilities.
  • Attack Patterns & CWE Mappings: Provides detailed information on attack patterns and Common Weakness Enumeration (CWE) mappings.
  • Use Case: When conducting a security review or preparing a bug bounty report, this Skill can be used to quickly reference the relevant security vulnerabilities and their associated CWE mappings.

Quick Start

Load the owasp-ref skill to access the quick reference for OWASP Top 10 and API Top 10 vulnerabilities.

Frequently Asked Questions about owasp-ref

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
What are the OWASP Top 10 and API Top 10 security vulnerabilities?

This reference provides the OWASP Top 10 and API Top 10 security vulnerabilities, offering concise summaries of risks, detailed attack patterns, and CWE mappings to aid security reviews and bug bounty hunting.

How do I find CWE mappings for OWASP API security vulnerabilities?

You can reference CWE mappings for OWASP API security vulnerabilities by loading this quick reference, which pairs each vulnerability with its specific Common Weakness Enumeration and associated attack patterns.

Can I use a quick reference for OWASP Top 10 during a security code review?

Yes, you can use this quick reference during a security code review to rapidly identify OWASP Top 10 vulnerabilities and access attack patterns and CWE mappings to mitigate potential security issues.

What's the best way to identify attack patterns for bug bounty hunting?

The best way to identify attack patterns for bug bounty hunting is using a quick reference that details OWASP Top 10 and API Top 10 vulnerabilities alongside their associated CWE mappings.

Does this OWASP Top 10 reference include API security vulnerabilities?

Yes, this OWASP Top 10 reference includes API security vulnerabilities, specifically providing a combined quick reference for both standard and API Top 10 lists along with their CWE mappings.