From Admin Panel to Root Shell: OS Command Injection in Dokploy's Backup Pipeline Using Codex Security
I spent an afternoon pointing Codex, running on GPT-5.6-Sol, at a 37k-star self-hosted PaaS and walked away with an unauthenticated-looking path to root on the host. It wasn't actually unauthenticated
blogs.night-wolf.io13 min read