Six curl CVEs after OpenAI and Anthropic came back with zero
The brief
A security audit round disclosed six CVEs in the curl project while code submitted by OpenAI and Anthropic received zero CVEs.
Key points
- The result has sparked discussion about whether AI-generated or AI-reviewed code produces fewer security vulnerabilities than traditional development.
- The finding is preliminary and based on a single audit round.
Sources
- HNaisle.com