The Open Web Application Security Project (OWASP) has released an updated edition of its Top 10 list, a widely-referenced ranking of application security risks
The new list marks the first update in four years and reflects several changes informed by expanded data inputs and survey responses from application security professionals.
“Software Supply Chain Failures” has risen to third place. This entry replaces and expands on the previous “Vulnerable and Outdated Components” category. According to a survey conducted for the update, this was the most frequently cited concern among over 220 security professionals.

