View Ridge Security
Back to Cyber HoseVulnerabilities & CVEs

Omnivore API Authentication Bypass in Apple Sign-In (CVE-2026-82454)

🔓 CVEs & KEV

  • CVE-2026-82454 — CVSS 9.3 — Omnivore API Authentication Bypass in Apple Sign-In (CVE-2026-82454)

  • CVE-2026-82562 — CVSS 6.3 — qs.parse does not enforce arrayLimit on comma groups under bracket-push keys ...

  • CVE-2026-82417 — CVSS 6.3 — qs.stringify throws TypeError on objects with a non-callable constructor.isBu...

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check