EILMELDUNGEN LIVE
🕵️ SicherheitslückenUSN-8709-1: ncurses vulnerability(01.09.2026 um 17:24 Uhr)
🕵️ SicherheitslückenUSN-8688-2: PAM vulnerability(01.09.2026 um 17:43 Uhr)
🕵️ SicherheitslückenUSN-8711-1: Libgcrypt vulnerability(01.09.2026 um 18:14 Uhr)
🕵️ SicherheitslückenUSN-8712-1: pyasn1 vulnerabilities(01.09.2026 um 18:20 Uhr)
🕵️ SicherheitslückenUSN-8713-1: BioSig vulnerabilities(02.09.2026 um 16:04 Uhr)
🕵️ SicherheitslückenUSN-8714-1: Linux kernel vulnerabilities(02.09.2026 um 23:30 Uhr)
🕵️ SicherheitslückenUSN-8715-1: Linux kernel (Oracle) vulnerabilities(02.09.2026 um 23:37 Uhr)
🕵️ SicherheitslückenUSN-8661-4: Linux kernel vulnerabilities(02.09.2026 um 23:40 Uhr)
🕵️ SicherheitslückenDSA-6459-1 libnet-dns-perl - security update(22.08.2026 um 02:00 Uhr)
🐧 Linux TippsDSA-6461-1 thunderbird - security update(23.08.2026 um 02:00 Uhr)
🕵️ SicherheitslückenUSN-8709-1: ncurses vulnerability(01.09.2026 um 17:24 Uhr)
🕵️ SicherheitslückenUSN-8688-2: PAM vulnerability(01.09.2026 um 17:43 Uhr)
🕵️ SicherheitslückenUSN-8711-1: Libgcrypt vulnerability(01.09.2026 um 18:14 Uhr)
🕵️ SicherheitslückenUSN-8712-1: pyasn1 vulnerabilities(01.09.2026 um 18:20 Uhr)
🕵️ SicherheitslückenUSN-8713-1: BioSig vulnerabilities(02.09.2026 um 16:04 Uhr)
🕵️ SicherheitslückenUSN-8714-1: Linux kernel vulnerabilities(02.09.2026 um 23:30 Uhr)
🕵️ SicherheitslückenUSN-8715-1: Linux kernel (Oracle) vulnerabilities(02.09.2026 um 23:37 Uhr)
🕵️ SicherheitslückenUSN-8661-4: Linux kernel vulnerabilities(02.09.2026 um 23:40 Uhr)
🕵️ SicherheitslückenDSA-6459-1 libnet-dns-perl - security update(22.08.2026 um 02:00 Uhr)
🐧 Linux TippsDSA-6461-1 thunderbird - security update(23.08.2026 um 02:00 Uhr)

29 🕛 kürzlich 5 Min Lesezeit CVE-RADAR
0

GitHub Release: openai/codex vrust-v0.153.0 (03.09.2026)

↗ Quelle (GitHub · openai/codex)
🗣️ Stimme:
GitHub Release: openai/codex vrust-v0.153.0 (03.09.2026)
📑 Inhaltsübersicht
Avatar
$ git clone https://github.com/openai/codex.git

New Features



  • Vim mode now supports undo with u and redo with Ctrl+R, preserving complete drafts including pasted content and attachments. ()

  • The plugin CLI can list, install, and remove plugins from remote marketplaces. ()

  • TUI history shows complete patches, input sent to background terminals, and individual completed commands. ()

  • Plus and Team users receive an earlier warning when less than half of their allowance remains in an approximately five-hour usage window. (, )

  • Full Access skips Guardian reviews for confirmation-only actions. User approval mode skips background Guardian scoring and prewarming, while sensitive-action checks and requests for user input retain their existing handling. ()

  • Guardian review history survives compaction, restarts, and user-created forks while respecting rollback boundaries and isolating subagent history. ()

  • Remembered MCP tool approvals are scoped to the selected app account, and relative MCP executable paths start more reliably on macOS. ()

  • Rollout compression includes shared histories, codex exec resume handles compressed rollouts when selecting by working directory, and thread forks work with symlinked session roots. ()


Configuration and API Updates



  • App-server thread metadata includes nullable model and reasoningEffort fields. Structured asynchronous questions are supported through request_user_input_async when enabled by the model catalog. ()

  • tui.disable_paste_burst replaces the top-level setting, which remains supported as a fallback. ()


Changelog


Use shared transcript collection for Guardian reviews

  • Add pinned native voice source preparation

  • Retain the MCP client for event streams

  • Fix Windows native voice dependency builds

  • Keep MCP event subscriptions alive after task unloading

  • Add installed voice host lifecycle support

  • Avoid scanning archived rollouts when archiving threads

  • Preserve TUI drafts after app-server disconnects

  • Preserve TUI status timing when the status row is hidden

  • Reconnect TUI app-server sessions automatically

  • Restore agent navigation after TUI reconnects

  • Record realtime conversation history in Core

  • Use executor path context for permission preapproval

  • Report configured sandbox policy consistently

  • Attach failed Guardian reviews to diagnostic reports

  • Clarify resume guidance in exit summaries

  • Add Vim undo to the TUI composer

  • Expand extension permission regression coverage

  • Improve tracing for nested tool calls and exec processes

  • Track TUI starts by app server mode

  • Preserve raw response usage metadata

  • Share Guardian user-message retention logic

  • Include shared histories in rollout compression

  • Add per-account approval settings for apps

  • Honor app link settings for MCP tool approvals

  • Remove selected core test cases

  • Remove redundant test coverage

  • Unify Guardian context section collection

  • Centralize Guardian context composition

  • Record Windows MXC availability

  • Prefer remote Sites over the bundled plugin

  • Extract OTEL trace WebSocket into a reusable crate

  • Show full patches and terminal input in TUI history

  • Treat bundled cleanup hooks as built-ins

  • Centralize remote plugin mutations in PluginsManager

  • Refine hook activity rendering in the TUI

  • Preserve descriptive labels on local file links

  • Prepare MCP connections for coordinated OAuth refresh

  • Scope session MCP approvals to app account links

  • Support thread forks from symlinked session roots

  • Add redo support to Vim composer history

  • Add Guardian V2 analytics events

  • Skip Guardian reviews in Full Access

  • Support remote marketplaces in the plugin CLI

  • Split tool JSON Schema code into focused modules

  • Support header injections in network requirements

  • Add structured asynchronous user input requests

  • Add experimental context management activation

  • Vollständiger Original-Bericht
    Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf github.com.
    ↗ Original-Artikel auf github.com lesen
    Wie bewertest du diesen Beitrag?
    1 Klick Feedback
    Teilen mit Netzwerk & Team:

    Community-Analysen & Experten-Meinungen 0

    Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
    Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
    Community Pulse: Relevanz-Einschätzung
    1 Klick Experten-Votum
    🔴 Akute Relevanz 45%
    🟡 In Evaluierung 31%
    🟢 Keine Auswirkung 13%
    Spannende Innovation 11%
    Verwandte Story-Cluster & Quellen (Vektor-KI)
    Port 8095 Engine
    1 Quelle
    Applying Zero Trust Principles to Agents - Kieran Human - ASW #397
    1 Quelle
    Connecting Cyber Risks to Board Outcomes & BHUSA interviews from Mimecast & Zscaler - Leslie Nielsen, Brett Stone-Gross, Dan Bowden - BSW #462
    1 Quelle
    Hacking All The Devices, with AI? - Rob Allen - PSW #941