OpenAI Codex macOS App Vulnerable to Indirect Prompt Injection for Data Exfiltration
A vulnerability in OpenAI's Codex desktop app for macOS allows attackers to inject prompts that cause the app to fetch remote images containing sensitive data, leading to potential exfiltration.