OWASP Top 10 for Agentic Applications
1. Prompt injection
2. Sensitive information disclosure
3. Excessive agency
4. Insecure tool use
5. Insecure output handling
6. Memory poisoning
7. Retrieval and knowledge base poisoning
8. Authentication and authorization failures
9. Resource exhaustion and denial of wallet
10. Supply chain and integration risk
What this means in practice
Last updated
Was this helpful?