Building a Next.js replacement in a week is impressive.
Finding serious security flaws in it is a reminder of something else:
speed and security are two different problems.
Hacktron found 24 validated issues in vinext, including 4 critical ones. @Cloudflare patched them.
AI is making software faster to build.
Security still needs to be deliberately engineered.
Full breakdown →
A Next.js replacement built with AI in a week shipped with 24 validated vulnerabilities, 4 critical, until Cloudflare patched them. Agentic engineers should budget separate security review for fast AI-built code.