Report by Veracode
October 2025 Update: GenAI Code Security Report
Key Findings
Over 85% of tasks related to Cryptographic Algorithms passed across the industry.
OpenAI’s GPT-5 Mini achieved a 72% pass rate on security tests, marking the highest recorded to date.
OpenAI’s standard GPT-5 achieved a 70% pass rate on security tests.
The pass rates for Log Injection vulnerabilities were near 12% across all evaluated models.
Qwen3 Coder achieved a 50% pass rate on security tests.
Google Gemini 2.5 Pro achieved a 59% pass rate on security tests.
Anthropic’s Claude Sonnet 4.5 achieved a 50% pass rate on security tests.
The pass rates for Cross-Site Scripting (XSS) vulnerabilities remained below 14% across all evaluated models.
xAI Grok 4 achieved a 55% pass rate on security tests.
OpenAI’s non-reasoning GPT-5-chat model delivered a 52% pass rate on security tests.