← Back to CVE List
CVE-2026-85531NVD
Vulnerability Summary
Improper verification of cryptographic signature vulnerability in Sipay Electronic Money and Payment Services Inc. OpenCart Virtual POS Module allows Signature Spoofing by Improper Validation.
This issue affects OpenCart Virtual POS Module: from 26.8.2 before 26.9.1.
This issue affects OpenCart Virtual POS Module: from 26.8.2 before 26.9.1.
CVSS v3.1 Base Metrics — Score 9.8 (CRITICAL)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Affected & Patched Versions
- Sipay Electronic Money and Payment Services Inc. OpenCart Virtual POS Module >= 26.8.2 and < 26.9.1
- Sipay Electronic Money and Payment Services Inc. OpenCart Virtual POS Module 26.9.1