CVE-2026-105848

CVE-2026-105848 published: Payload is a free and open source headless content management system. In @payloadcms/plugin-stripe versions before 3.90.0 and canary versions before 4.0.0-canary.34, an authenticated user who can reach the enabled optional Stripe REST proxy can perform unin...

View full NVD advisory → ← Back to CVE watch