The document is a project report detailing the development of a semi-automated security testing tool for web applications, addressing critical vulnerabilities commonly found in web applications. It discusses application security, the need for automated testing tools, and outlines the objectives, methodology, and findings from testing the tool on a vulnerable web application and live sites. Additionally, the report provides recommendations for best practices and corrective actions based on identified vulnerabilities.