CVE-2026-78154EPSS p33.4%
CVE-2026-78154CVE-2026-78154
Description
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The endpoint is public on purpose and the invitation code is the credential. This is the standalone SDK onboarding path for mobile apps that have no backend of their own: a developer generates a code via the authenticated dashboard endpoint, the user types it into the app, and it's redeemed for SDK-scoped tokens.
Scoring
| EPSS | 0.40% probability of exploitation · percentile 33.4% · 2026-08-24T12:02:36Z |
| Last modified | 2026-08-25 |