CVE-2026-19590 | OpenAI Codex Desktop Hooks .git/config core.hooksPath privileges management
A vulnerability marked as problematic has been reported in OpenAI Codex Desktop. This affects an unknown function of the file .git/config of the component Hooks. Performing a manipulation of the argument core.hooksPath results in improper privilege management.
This vulnerability is cataloged as CVE-2026-19590. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More