Known Vulnerabilities for Plugin-multi-tenant by @payloadcms
Listed below are 5 of the newest known vulnerabilities associated with "Plugin-multi-tenant" by "@payloadcms".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-105864 json | Payload is a free and open source headless content management system. In @payloadcms/plugin-multi-tenant versions before 3.90... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-105860 json | Payload is a free and open source headless content management system. In @payloadcms/plugin-multi-tenant versions before 3.90... | Not Provided | 2026-10-06 | 2026-10-06 |
| CVE-2026-93987 json | rclone versions 1.56.0 through 1.75.0 contain a path traversal vulnerability in the `rclone serve docker` volume plugin. newV... | Not Provided | 2026-09-19 | 2026-09-21 |
| CVE-2026-76237 json | stigmem-node before 0.9.0a12 contains a broken object level authorization (cross-tenant BOLA) vulnerability in the quarantine... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-76236 json | stigmem-node before 0.9.0a12 contains a cross-tenant broken object level authorization (BOLA) flaw in the RTBF (right-to-be-f... | Not Provided | 2026-08-19 | 2026-08-21 |