In this article OWASP has released the GenAI LLM Top 10 for 2026. The movement between rankings signals where AI security priorities are heading: toward agency, context and the consequences of AI actions. →prompt injection and sensitive information disclosure hold the top two positions →excessive agency jumps from LLM06 to LLM03, the biggest move in the ranking →hidden context exposure replaces system prompt leakage, widening what needs protecting →misinformation rises as AI output feeds workflows, code and automated actions OWASP has released the GenAI LLM Top 10 for 2026, updating one of the