ISO standards fall short in addressing web application security vulnerabilities.
The ISO/IEC 17799:2005 and the ISO/IEC 27000:2014 Series are standards related to information security. These standards are mentioned in Chapter 8 of a book as a compliance resource. However, they do not provide detailed information on web application security vulnerabilities.