Skip to content

standard

OWASP Top 10 for LLM Applications 2025

Ranked list of the ten most critical security risks in applications built on large language models, published by OWASP. The 2025 edition runs from LLM01 Prompt Injection to LLM10 Unbounded Consumption.

Current clusters

build1 publisher

Nine of OWASP's ten LLM risks land on whoever deployed the agent

A dev.to post argues the OWASP Top 10 for LLM Applications 2025 is a list of things a better model will not fix, including over-scoped permissions, unvalidated agent output, and retry loops that bill by the token.

Publishers:dev.to

Reality

Evidence58
Adoption
Insufficient
Hype gap+12
Incentives30
Confidence56