CVE-2026-105867 | PayloadCMS Payload prior 3.90.0/4.0.0-canary.34 storage-s3 access control
A vulnerability identified as problematic has been detected in PayloadCMS Payload. Impacted is an unknown function of the component storage-s3. The manipulation leads to improper access controls.
This vulnerability is listed as CVE-2026-105867. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More