Showing 1 vulnerability on this page for @ai-sdk/harness-codex

Signals CISA KEV Ransomware Nuclei
vercel vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

AI SDK Codex Harness Tool Relay Authorization Bypass

The `@ai-sdk/harness-opencode` tool is an HarnessV1 adapter backed by @openai/codex-sdk, which drives the codex command line interface. Prior to version 1.0.29, the tool relay authorizes requests from any process whose command line contains an allowed helper script path (the Codex CLI shim). This allows untrusted code executing in the sandbox to invoke arbitrary host-exposed tools, including secret lookups, deployment operations, and cloud API calls without a corresponding model-authorized tool

CWE-863Jul 20, 2026
CVSS6.3v4.0EPSS0.113%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX