CVE-2026-34749 | payloadcms payload up to 3.79.0 cross-site request forgery (GHSA-p6mr-xf3r-ghq4)
A vulnerability was found in payloadcms payload up to 3.79.0 and classified as problematic. This vulnerability affects unknown code. Such manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2026-34749. The attack may be launched remotely. There is no exploit available.
It is suggested to upgrade the affected component.