PORTAL
ACME CORP · AIR-2026-Q2
LLM red team · customer chatbot
Live · last sync 14m ago
JR
Jane Rodriguez
Overview Findings 14 Timeline Documents6 Team
Search 14 findings · filter by tag · OWASP LLM…
SEVERITY · ALL CATEGORY · ALL ASSIGNED · ANY
Triage 4
+
CRIT AIR-014
Indirect prompt injection · PDF
LLM01 inj
Daniel O.
14m
HIGH AIR-013
Tool call without re-auth
LLM02
Marta K.
2h
HIGH AIR-012
RAG poisoning · workspace docs
LLM03 rag
Daniel O.
5h
MED AIR-011
Verbose error · model identity
LLM06
Marta K.
1d
In remediation 5
+
HIGH AIR-009
Session bleed in multi-tenant
LLM05
Daniel O.
3d
MED AIR-008
Output handling · downstream XSS
LLM07
Marta K.
4d
MED AIR-007
Cost amp · recursive tool call
LLM04
Daniel O.
4d
MED AIR-006
PII leakage in vector neighbours
LLM02 pii
Marta K.
5d
LOW AIR-005
Rate limit bypass · UA spoofing
LLM10
Daniel O.
6d
Verifying 3
+
HIGH AIR-004
Privilege escalation via plug-in
LLM08
Marta K.
7d
MED AIR-003
Insecure plug-in mfg metadata
LLM08
Daniel O.
8d
LOW AIR-002
Outdated model fingerprint
LLM06
Marta K.
9d
Closed 2
+
HIGH AIR-001
Insecure default · system prompt
LLM07
Daniel O.
11d
LOW AIR-000
Open trace endpoint
LLM06
Marta K.
12d