pkg:npm/@payloadcms/next

3 total CVEsHIGH1

✅ Check your installed version

All known vulnerabilities

  • HIGH8.7CVE-2026-34748@payloadcms/next has Stored XSS in Admin Panel
    from 0, < 3.78.0
  • CVE-2025-4644Payload's SQLite adapter Session Fixation vulnerability
    from 0, < 3.44.0
  • CVE-2025-4643Payload does not invalidate JWTs after log out
    from 0, < 3.44.0