Known Vulnerabilities for Codex Desktop by OpenAI
Listed below are 5 of the newest known vulnerabilities associated with "Codex Desktop" by "OpenAI".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-19593 json | OpenAI Codex Desktop for Windows and macOS automatically inspected Git metadata and working-tree status when a user opened a ... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-19592 json | OpenAI Codex CLI for Windows, macOS, and Linux and Codex Desktop for Windows and macOS automatically collected Git repository... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-19591 json | OpenAI Codex CLI for Windows, macOS, and Linux and Codex Desktop for Windows and macOS misclassified certain PowerShell comma... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-19590 json | OpenAI Codex Desktop for Windows and macOS could execute attacker-controlled Git hooks because automated Git operations trust... | Not Provided | 2026-09-01 | 2026-09-03 |
| CVE-2026-14898 json | The OpenAI Codex desktop app for macOS rendered remote images from Markdown in model responses. An attacker who could place a... | Not Provided | 2026-07-06 | 2026-07-07 |