CVE-2026-105864 | payloadcms Payload prior 3.90.0/4.0.0-canary.34 plugin-multi-tenant privileges management
A vulnerability was found in payloadcms Payload. It has been classified as problematic. Affected by this issue is some unknown functionality of the component plugin-multi-tenant. This manipulation causes improper privilege management.
The identification of this vulnerability is CVE-2026-105864. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More