Top web vulnerabilities
Skill newmindsgroup/ai-agent-skills-library/dist/skills/top-web-vulnerabilities
Provide a comprehensive, structured reference for the 100 most critical web application vulnerabilities organized by category. This skill enables systematic vulnerability identification, impact assessment, and remediation guidance across the full spectrum of web security threats.From its SKILL.md
npx -y skills add newmindsgroup/ai-agent-skills-library --skill top-web-vulnerabilitiesAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
One thing to look at
- 1 stars1 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.
What its file declares
Copied from the file, not written here
The file declares its own license as MIT. That is the author’s claim about this one file, and it is not the same thing as the license GitHub reports for the repository, which is listed with the other numbers below.
SKILL.md
2.5 KB, 407 tokens by cl100k_base, as published. Nobody here has run it
Top 100 Web Vulnerabilities Reference
Provide a comprehensive, structured reference for the 100 most critical web application vulnerabilities organized by category. This skill enables systematic vulnerability identification, impact assessment, and remediation guidance across the full spectrum of web security threats.
When to Use
- This skill is applicable to execute the workflow or actions described in the overview.
Core Workflow
- Confirm the request matches this skill's trigger, scope, and risk profile.
- Use the topic map to identify the relevant pattern, checklist, or example before writing detailed guidance or code.
- Load
references/full-guidance.mdwhen implementation details, examples, anti-patterns, validation checks, or edge cases are needed. - Apply only the relevant guidance instead of loading or repeating the entire reference by default.
- Verify the result against any validation checks, limitations, security notes, or platform constraints in the reference.
Topic Map
- Purpose
- Prerequisites
- Outputs and Deliverables
- Core Workflow
- Phase 1: Injection Vulnerabilities Assessment
- Phase 2: Authentication and Session Security
- Phase 3: Sensitive Data Exposure
- Phase 4: Security Misconfiguration
- Phase 5: XML-Related Vulnerabilities
- Phase 6: Broken Access Control
- Phase 7: Insecure Deserialization
- Phase 8: API Security Assessment
- Phase 9: Communication Security
- Phase 10: Client-Side Vulnerabilities
- Phase 11: Denial of Service Assessment
- Phase 12: Server-Side Request Forgery
- Phase 13: Additional Web Vulnerabilities
- Phase 14: Mobile and IoT Security
Reference Map
references/full-guidance.mdpreserves the complete original guidance, including examples and detailed edge cases.
Progressive Loading
Keep this SKILL.md as the compact routing and workflow entrypoint. Load the reference file only when the user task requires the deeper implementation material.
What ships with it: 1 file
23.4 KB alongside SKILL.md
references/
- full-guidance.md23.4 KB