IDOR in AI-Generated APIs: The Ownership Check Cursor Always Skips
A developer discovered that AI code generators like Cursor consistently omit ownership checks in API endpoints, leading to Insecure Direct Object Reference (IDOR) vulnerabilities. The AI correctly imp…