Researchers found that .env files inside cloned repositories could be used to change the Codex CLI home directory path and ...
OpenAI patched a command injection flaw in its Codex CLI tool that let attackers run arbitrary commands on developer machines ...