Are insecure code completions in PyCharm a vulnerability?

12_throw_away 20 points 3 comments June 11, 2026
sethmlarson.dev · View on Hacker News

Discussion Highlights (3 comments)

marcosdumay

Well, the plugin developers can't really do anything about it. And it's the one thing the LLM developers have been trying to fix for the last 2 years. Apparently, even at the cost of some other functionality. It's not like they can do it reliably.

stephantul

It’s an interesting question: I’d say this is more of a vulnerability creator than the actual vulnerability. Similar to how using very difficult technologies makes you more likely to create code with vulnerabilities: the technologies are not the vulnerability, but it’s easier to cause them.

Scarbutt

Are you under the impression that AI generated means production ready and vulnerability free?

Semantic search powered by Rivestack pgvector
10,094 stories · 94,891 chunks indexed