That still exists in the OSS world too, having your code out there is no panacea. I think we'll see a real swarm of security issues across the board, but I would expect the OSS world to fare better (perhaps after a painful period).
There is no guarantee that open means that they will be discovered.
So just like a pre-AI or worse?