Unauthenticated SQL Injection in Epayco Gateway by Epayco
CVE-2026-78260
9.3CRITICAL
What is CVE-2026-78260?
An unauthenticated SQL injection vulnerability exists in the Epayco Gateway, specifically affecting versions up to 8.4.6. This flaw allows attackers to manipulate SQL queries, potentially leading to unauthorized access to sensitive data and severe ramifications for affected systems. It is crucial for users of the Epayco Gateway to implement the latest security patches to mitigate risks associated with this vulnerability.
Affected Version(s)
Epayco <= 8.4.6