Vibe coding vulnerabilities
2026-02-16 18:07:57.266672+01 by Dan Lyke 0 comments
Kevin Beaumont @GossiTheDog@cyberplace.social
Today in InfoSec Job Security News:
I was looking into an obvious ../.. vulnerability introduced into a major web framework today, and it was committed by username Claude on GitHub. Vibe coded, basically.
So I started looking through Claude commits on GitHub, theres over 2m of them and its about 5% of all open source code this month.
https://github.com/search?q=au...ype=commits&s=author-date&o=desc
As I looked through the code I saw the same class of vulns being introduced over, and over, again - several a minute.