0.151.0
1 years ago
1 hours ago
Known vulnerabilities in the @openai/codex package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
@openai/codex is a OpenAI Codex CLILightweight coding agent that runs in your terminal Affected versions of this package are vulnerable to Arbitrary Code Injection via the automatic loading of How to fix Arbitrary Code Injection? Upgrade | <0.23.0 |
@openai/codex is a OpenAI Codex CLILightweight coding agent that runs in your terminal Affected versions of this package are vulnerable to Inclusion of Functionality from Untrusted Control Sphere due to auto-approving How to fix Inclusion of Functionality from Untrusted Control Sphere? Upgrade | <0.9.0 |