VendorsDelmare Digitalpayload-puckany version
Vulnerabilities

Delmare Digital Payload-puck any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2026-39397
@delmaredigital/payload-puc is missing authorization on /api/puck/* CRUD endpoints allows unauthenticated access to Puck-registered collections
Published 2026-04-07 · Analyzed
9.8EPSS 0.006