CVE-2026-19590 | OpenAI Codex Desktop Hooks .git/config core.hooksPath privileges management

SecurityVulns

A vulnerability marked as problematic has been reported in OpenAI Codex Desktop. This affects an unknown function of the file .git/config of the component Hooks. Performing a manipulation of the argument core.hooksPath results in improper privilege management.

This vulnerability is cataloged as CVE-2026-19590. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More