AI writes half our code now. It still fails security tests 44% of the time.
AI can now write compilable code almost every time it tries. It still ships a security hole in nearly half of it, and that has not changed in a year.
That is the headline finding of Veracode’s 2026 GenAI Code Security Report, which tested more than 100 models across four snapshots. The average security pass rate sits at 56%, almost exactly where it began at 55%.
Read that number against the other one in the report. AI now writes roughly half of all committed code. The failure rate held steady while the volume underneath it exploded.
Syntax is solved. Security is not.
The gap is stark. Given no security-specific prompting, models produce code that compiles about 100% of the time. On security, they fail nearly 44% of the time, introducing a vulnerability from the OWASP Top 10.
The 💜 of EU tech
The latest rumblings from the EU tech...
Copyright of this story solely belongs to thenextweb.com. To see the full text click HERE