OWASP Annual Report - 2009 is online with OWASP Top 10 for 2010.
OWASP Top 10 for 2010.
A1: Injection
A2: Cross-site Scriptoing (XSS)
A3: Broken Authentication and Session Management
A4: Insecure Direct Object References
A5: Cross-Site Request Forgery (CSRF)
A6: Security Misconfiguration
A7: Insecure Cryptographic Storage
A8: Failure to Restrict URL Access
A9: Insufficient Transport Layer Protection
A10: Unvalidated Redirects and Forwards
Click here to download OWASP Annual Report - 2009