Skip to content

Labels

Labels

  • Something isn't working
  • Improvements or additions to documentation
  • This issue or pull request already exists
  • New feature or request
  • Community feedback on a specific entry
  • Good for newcomers
  • Extra attention is needed
  • This doesn't seem right
  • LLM01 Prompt Injection
  • LLM02 Sensitive Information Disclosure
  • LLM03 Supply Chain
  • LLM04 Data and Model Poisoning
  • LLM05 Improper Output Handling
  • LLM06 Excessive Agency
  • LLM07 System Prompt Leakage
  • LLM08 Vector and Embedding Weaknesses
  • LLM09 Misinformation
  • LLM10 Unbounded Consumption
  • Further information is requested
  • Sprint 2 — Community Review and Voting (May 4–18, 2026)
  • Compositional Fine-Tuning Alignment Subversion
  • Cross-Modal Safety Bypass
  • Inference-Time Side-Channel Disclosure
  • MCP Tool Interface Exploitation
  • Model Misalignment
  • Model Scheming and Deceptive Alignment
  • Systemic Insecure Code Generation
  • Weaponized LLM Abuse
  • Track A — feedback on existing Top 10 entries
  • Track B — feedback on new candidate entries