CVE-2023-26861: Vivawallet Viva Wallet

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

SQL injection vulnerability found in PrestaShop vivawallet v.1.7.10 and before allows a remote attacker to gain privileges via the vivawallet() module.

Affected products

  • Vivawallet Viva Wallet: up to and including 1.7.10

Published 2023-07-11. Last modified 2026-06-17.