---
reference_key: owasp-llm
title: "OWASP Top 10 for LLM Applications 2025"
url: "https://genai.owasp.org/llm-top-10/"
availability: available
capture_method: primary
captured_at: 2026-06-23T03:30:20Z
document_id: REF-owasp-llm
---

# OWASP Top 10 for LLM Applications 2025

| Field | Value |
|-------|-------|
| **Reference key** | `owasp-llm` |
| **Availability** | AVAILABLE |
| **Capture method** | `primary` |
| **Source type** | remote_url |
| **URL / path** | https://genai.owasp.org/llm-top-10/ |
| **Captured (UTC)** | 2026-06-23T03:30:20Z |
| **Content type** | text/html; charset=UTF-8 |
| **HTTP status** | 200 |

## Boardroom Citation Context

MVAP P2 application security; OWASP LLM Top 10 test suite.

## Source Location

https://genai.owasp.org/llm-top-10/





## Captured Content

```text
LLMRisks Archive - OWASP Gen AI Security Project Skip to content Join us in London, 6/2  6/4 InfoSecurity Europe  OWASP GenAI and Agentic Security Summit | Register Now! GETTING STARTED Introduction MEETINGS CONTRIBUTING EVENTS GLOSSARY RESOURCES All LLM TOP 10 LLM TOP 10 FOR 2025 LLM TOP 10 FOR 2023/24 CHEAT SHEETS WHITEPAPERS TOOLS LEARNING VIDEOS SOLUTIONS DIRECTORY ROADMAP NEWSLETTER PROJECT INITIATIVES AI Security Landscape AIBOM Generator GOVERNANCE CHECKLIST Threat Intelligence AGENTIC APP SECURITY Secure AI Adoption AI Red Teaming Data Security BLOG ABOUT Mission and Charter Governance LEADERSHIP INDUSTRY RECOGNITION CONTRIBUTORS SPONSORS SUPPORTERS SPONSORSHIP NEWSROOM CONTACT BRANDING TOP 10 FOR GEN AI 2025 Top 10 Risk & Mitigations for LLMs and Gen AI Apps Expore the latest Top 10 risks, vulnerabilities and mitigations for developing and securing generative AI and large language model applications across the development, deployment and management lifecycle. Read the OWASP Top 10 for LLMs 2023-24 Download LLM01:2025 Prompt Injection A Prompt Injection Vulnerability occurs when user prompts alter the... Read More LLM02:2025 Sensitive Information Disclosure Sensitive information can affect both the LLM and its application... Read More LLM03:2025 Supply Chain LLM supply chains are susceptible to various vulnerabilities, which can... Read More LLM04:2025 Data and Model Poisoning Data poisoning occurs when pre-training, fine-tuning, or embedding data is... Read More LLM05:2025 Improper Output Handling Improper Output Handling refers specifically to insufficient validation, sanitization, and... Read More LLM06:2025 Excessive Agency An LLM-based system is often granted a degree of agency... Read More LLM07:2025 System Prompt Leakage The system prompt leakage vulnerability in LLMs refers to the... Read More LLM08:2025 Vector and Embedding Weaknesses Vectors and embeddings vulnerabilities present significant security risks in systems... Read More LLM09:2025 Misinformation Misinformation from LLMs poses a core vulnerability for applications relying... Read More LLM10:2025 Unbounded Consumption Unbounded Consumption refers to the process where a Large Language... Read More Document Versions and Translations April 11, 2024 LLM Top 10 for LLMs 2024 May 4, 2024 OWASP Top 10 for LLM Overview Presentation May 7, 2024 LLM Top 10 for LLMs 2024  Chinese 1 2 3 4 Next Top 10 2025 de riesgos y mitigaciones para LLMs y aplicaciones de IA Generativa View  March 12, 2025 OWASP Top 10 para Aplicacoes de LLM e IA Generativa (2025) View  March 12, 2025 OWASP AI (2025) View  March 12, 2025 2025  LLM Applications    OWASP    10 View  July 22, 2025 OWASP -10   LLM 2025 View  July 22, 2025 LLM   OWASP Top 10 2025 View  July 22, 2025 OWASP Top 10  LLM    (2025) View  March 12, 2025 OWASPAI(2025) View  March 12, 2025 die OWASP Top 10 fur LLM & Generative KI (2025) View  March 12, 2025 (LLM)OWASP Top 10 View  July 22, 2025 PRIVACY NEWSLETTER CONTACT Overview LLM Top 10 Initiatives Landscape Glossary Roadmaps Resources Sponsors Sponsorship Contribute Newsroom Events Meetings Leadership Volunteer Jobs OWASP and the OWASP logo are trademarks of the OWASP Foundation, Inc. Unless otherwise specified, all content on the site is Creative Commons Attribution-ShareAlike v4.0 and provided without warranty of service or accuracy. For more information, please refer to our General Disclaimer .  Copyright  2025 OWASP Foundation, Inc. Scroll to Top LLM10:2025 Unbounded Consumption Loading Comments... Write a Comment... Email (Required) Name (Required) Website
```

---

*Archived reference article for AICSR-STUDY-2026-001 footnote corpus.*
