CRITICAL
9.8 CVE-2026-86405 Published 9 Oct 2026
PrestaShop Virtual POS Module Signature Spoofing Vulnerability
Worried this affects your website?
A vulnerability in PrestaShop Virtual POS Module allows signature spoofing due to improper verification of cryptographic signatures.
The issue is caused by improper validation of cryptographic signatures in the module developed by Sipay Electronic Money and Payment Services Inc.
- Affected versions: from 26.8.1 before 26.9.1
- Impact: An attacker can spoof signatures, potentially bypassing security checks.
Reference: CVE-2026-86405 on NVD
← Back to Security News