V
Vexday
by TrueHacking
›
PT
ES
EN
Intelligence
▾
Intelligence
Exploit Timeline
risk queue
Threats
ransomware · malware
Overview
observatory
Explore
▾
Explore
CVEs
Technologies
Vendors
Weakness types
Briefing
Live
Home
/
Technologies
/
Payload CMS
Vulnerabilities in
Payload CMS
2 results
CVE-2025-4643
MEDIUM
Lack of JWT Expiration after Log Out in PayloadCMS
EPSS
0.5%
CVE-2025-4644
MEDIUM
User Session Fixation after Account Removal in PayloadCMS
EPSS
0.4%