Michael Sutton's Blog : How Prevalent Are SQL Injection Vulnerabilities?
Earlier this month, Mitre revealed that web application vulnerabilities have now claimed the top three spots on the CVE request list. Specifically, the ranking for 2006 is as follows: Cross Site Scripting (21.5%) SQL Injection (14%) PHP includes (9.5%)

No comment on this link yet.