Software Engineering KB

Home

❯

08 Security

❯

02 Application Security

❯

01 Concept

❯

Broken Access Control

Broken Access Control

Feb 10, 20261 min read

  • application-security
  • owasp
  • access-control

Broken Access Control

← Back to OWASP Top 10

The #1 OWASP Top 10 risk (2021). Missing or improperly implemented authorization checks allowing users to access resources or perform actions beyond their intended permissions. Includes IDOR (Insecure Direct Object Reference) and privilege escalation.

Key Properties

  • Missing Authorization Checks
  • IDOR (Insecure Direct Object Reference)
  • Privilege Escalation

application-security owasp access-control


Graph View

  • Broken Access Control
  • Key Properties

Backlinks

  • OWASP Top 10
  • IDOR (Insecure Direct Object Reference)

Created with Quartz v4.5.2 © 2026

  • GitHub