CVE-2023-26861 Information

Description

SQL injection vulnerability found in PrestaShop vivawallet v.1.7.10 and before allows a remote attacker to gain privileges via the vivawallet() module.

Reference

https://github.com/VivaPayments/API/commit/c1169680508c6e144d3e102ebdb257612e4cd84a https://addons.prestashop.com/fr/paiement/89363-viva-wallet-smart-checkout.html https://security.friendsofpresta.org/modules/2023/07/11/vivawallet.html

Share on: