Versioned taxonomy

OWASP GenAI LLM Top 10:2026

The current OWASP Top 10 for LLM Applications, including agent, retrieval, memory, and output trust boundaries.

Stable IDowasp:owasp:genai:llm:top:10:2026Last updatedLast verifiedLegacy review pendingProvenanceOWASP primary source
LLM01

Prompt Injection

LLM02

Sensitive Information Disclosure

LLM03

Excessive Agency

LLM04

Supply Chain

LLM05

Data and Model Poisoning

LLM06

Unbounded Consumption

LLM07

Misinformation

LLM08

Hidden Context Exposure

LLM09

Vector and Embedding Weaknesses

LLM10

Improper Output Handling

Primary source and edition policy

Vulns.co preserves older editions at stable URLs and does not silently rewrite historical mappings.

Open the official OWASP edition ↗