OpenAI GPT-5.2-Codex Supercharges Agentic Coding and Vulnerability Detection
OpenAI has released GPT-5.2-Codex, a model specifically designed to enhance agentic coding and cybersecurity functions. This model marks significant advancements in managing complex software engineering and vulnerability detection tasks.
OpenAI has released GPT-5.2-Codex, a model specifically designed to enhance agentic coding and cybersecurity functions. This model marks significant advancements in managing complex software engineering and vulnerability detection tasks.
GPT-5.2-Codex achieved a 56.4% accuracy on the SWE-Bench Pro, surpassing both GPT-5.2 at 55.6% and GPT-5.1 at 50.8%. On the Terminal-Bench 2.0, it scored 64.0%, outperforming the previous version, GPT-5.2, which scored 62.2%. These improvements are attributed to enhanced long-context handling, tool utilization, and native compaction for extended coding sessions.
Benchmark GPT-5.2-Codex GPT-5.2 GPT-5.1-Codex-Max
SWE-Bench Pro 56.4% 55.6% 50.8%
OpenAI has released GPT-5.2-Codex, a model specifically designed to enhance agentic coding and cybersecurity functions.
Terminal-Bench 2.0 64.0% 62.2% 58.1%
The model demonstrates significant improvements in professional Capture-the-Flag challenges, supporting tasks such as fuzzing, test environment setup, and attack surface analysis, which enhance defensive workflows. OpenAI has implemented stronger safeguards to mitigate dual-use risks, ensuring the model's cyber capability remains below the "High" threshold defined by its Preparedness Framework.
Utilizing GPT-5.1-Codex-Max, a researcher identified vulnerabilities in React Server Components while examining CVE-2025-55182 , a critical remote code execution issue fixed on Sun, Dec 3, 2023. This led to the discovery of additional vulnerabilities, including CVE-2025-55183 (source code exposure, CVSS 5.3), CVE-2025-55184 , and CVE-2025-67779 (Denial of Service, CVSS 7.5), disclosed on Mon, Dec 11, 2023.
GPT-5.2-Codex is currently available to paid ChatGPT Codex users, with API access expected soon. An invite-only pilot program is being launched for verified cybersecurity professionals to support defensive operations such as red-teaming. OpenAI aims to combine technological advancements with community collaboration to prevent misuse.
These developments equip developers and security professionals to better address emerging threats in codebases and infrastructure. React patches are recommended, urging upgrades to versions starting from 19.0.3.
Based on reporting by Cyber Security News.
