Back in April we took an in-depth look at the proposed OWASP Top-10 API Security Risks list for 2023. This Release Candidate (RC) contained a few changes from the 4-year-old version, most notably: Created a new category API3:2023RC (Broken Object Property Level Authorization) by essentially combining API6:2019 (Mass Assignment) with API3:2019 (Excessive Data Exposure). Created a new category API6:2023RC (Server Side Request Forgery), overlapping with A10:2021 from the web application security risks version. Created a…