Skip to content

AI Vulnerability Scoring System (AIVSS)

  • Publisher: OWASP
  • Status: draft
  • Version: 0.5
  • Release Date: 2025-07-30
  • Date Added: 2025-09-08
  • Source URL: https://aivss.owasp.org/

Summary

AIVSS is a quantitative scoring framework designed to assess security vulnerabilities in agentic AI systems. It extends traditional CVSS metrics by incorporating AI-specific factors such as autonomy, model robustness, ethical impact, and decision criticality, producing a holistic risk score tailored for autonomous AI agents.


Key Takeaways

  • Supported by a scoring calculator and framework guide; includes templates for assessment reports.
  • Designed to quantify and prioritize vulnerabilities unique to AI agents beyond traditional flaws.
  • AIVSS is currently in v0.5 and undergoing community review and development.
  • Integration & mapping to threat taxonomies like ATLAS.

Additional Sources


Tags

risk, llm-security, agentic-ai, scoring assessment


License

CC-BY-SA-4.0