All 2 CVE vulnerabilities found in payload-plugins, with AI-generated Chinese analysis, references, and POCs.
Vendor: jhb-software
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-58200 | @jhb.software/payload-cloudinary-plugin: Arbitrary Cloudinary API Parameter Signing CWE-347 | 7.1 | High | 2026-09-15 |
| CVE-2026-59965 | @jhb.software/payload-alt-text-plugin: Alt Text Endpoint Authorization Bypass via Payload Local API `overrideAccess` Omission CWE-863 | 7.1 | High | 2026-09-15 |
All 2 known CVE vulnerabilities affecting payload-plugins with full Chinese analysis, references, and POCs where available.