CVE-2026-105859 - Payload: Unauthorized update to collection documents
CVE ID :CVE-2026-105859 Published : Oct. 6, 2026, 4:31 p.m. | 56 minutes ago Description :Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, an attacker can submit a request to a specific update endpoint...