CVE-2026-92172: Meta Platforms, Inc Meta Horizon OS
High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Prior to v66.0.0.733.524 of Meta Horizon OS, OVRMediaService could be induced to send a privileged PendingIntent including a com.oculus.horizon CallerIdentity to an arbitrary application registering for com.oculus.systemactivities.SCREENSHOT via a broadcast receiver. That would allow the application to impersonate the com.oculus.horizon package towards any endpoint within the OS that uses CallerIdentity authentication.
Affected products
- Meta Platforms, Inc Meta Horizon OS: from v0.0.0.0.0, before v66.0.0.733.524 (fixed in v66.0.0.733.524)
Published 2026-09-30. Last modified 2026-10-01.