Two sandbox-escape vulnerabilities in OpenAI Codex, Heapjack and Overpatch, allowed unsandboxed command execution even in read-only mode. Discovered by Oren Yomtov, patched https:// deafnews.it/en/art

Two sandbox-escape vulnerabilities in OpenAI Codex, Heapjack and Overpatch, allowed unsandboxed command execution even in read-only mode. Discovered by Oren Yomtov, patched https:// deafnews.it/en/article/two-bug s-in-openai-codex-break-the-strictest-sandbox-in-read-only-mode

1 reportother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

Two sandbox-escape vulnerabilities in OpenAI Codex, Heapjack and Overpatch, allowed unsandboxed command execution even in read-only mode. Discovered by Oren Yomtov, patched https:// deafnews.it/en/art

mastodon:infosec-exchangeother9d ago kagi ↗

Two sandbox-escape vulnerabilities in OpenAI Codex, Heapjack and Overpatch, allowed unsandboxed command execution even in read-only mode. Discovered by Oren Yomtov, patched https:// deafnews.it/en/article/two-bug s-in-openai-codex-break-the-strictest-sandbox-in-read-only-mode