Description
Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, a crafted request to the public first-register operation can execute code remotely when local authentication is enabled and no initial user has been created. This issue is fixed in versions 3.90.0 and 4.0.0-canary.34.
Published: 2026-10-06
Score: 8.1 High
EPSS: n/a
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

Payload, a headless CMS, is vulnerable to a remote code execution flaw triggered via the first-register endpoint. The flaw, present in versions prior to 3.90.0 and canary releases before 4.0.0-canary.34, permits an attacker to deliver arbitrary code when local authentication is enabled and no initial user exists. This attack is possible because the input handling for the first-register operation fails to validate or sanitize user-supplied data, leading to execution of untrusted code. The consequence is full compromise of the application server, allowing an attacker to execute commands, exfiltrate data, or pivot to other assets, representing a severe breach of confidentiality, integrity, and availability.

Affected Systems

Affected systems are installations of PayloadCMS payload version 3.x before 3.90.0 and canary releases earlier than 4.0.0-canary.34. Administrators running Payload in a local-authentication context without an existing user should be aware that the public first-register endpoint is unprotected, enabling remote code execution. No other vendors or products are listed as affected.

Risk and Exploitability

The CVSS score of 8.1 indicates high severity, and the lack of an EPSS score does not demonstrate a current exploitation trend, but the vulnerability remains unfixed until a patch is applied. The vulnerability is not listed in the CISA KEV catalog, yet its nature and exposure via a public API make it a priority exploit vector for attackers aware of it. An attacker can inject code by sending a crafted request to the first-register route while local authentication is active and the system has not yet created an initial user. Because the code execution occurs on the server, the attacker gains full control of the Payload instance.

Generated by OpenCVE AI on October 6, 2026 at 17:57 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade Payload to version 3.90.0 or later, or 4.0.0-canary.34, where the issue is resolved.
  • If an upgrade is not immediately possible, disable or protect the first-register endpoint so that it is not exposed publicly, or restrict it to authenticated administrators only.
  • Ensure that local authentication is turned off or that an initial user exists before enabling the first-register operation, to eliminate the pre-condition for the vulnerability.

Generated by OpenCVE AI on October 6, 2026 at 17:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 06 Oct 2026 16:45:00 +0000

Type Values Removed Values Added
Description Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, a crafted request to the public first-register operation can execute code remotely when local authentication is enabled and no initial user has been created. This issue is fixed in versions 3.90.0 and 4.0.0-canary.34.
Title Payload: Remote Code Execution through first-register
Weaknesses CWE-1321
CWE-94
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-10-06T16:29:52.420Z

Reserved: 2026-10-05T23:06:29.748Z

Link: CVE-2026-105858

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-06T17:17:21.847

Modified: 2026-10-06T17:17:21.847

Link: CVE-2026-105858

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-06T18:00:05Z

Weaknesses
  • CWE-1321

    Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

  • CWE-94

    Improper Control of Generation of Code ('Code Injection')