CediPay Improper Input Validation Vulnerability in Transaction API

Vulnerability

A vulnerability in CediPay, a crypto-to-fiat application for the Ghanaian market, allows attackers to bypass input validation in the transaction API. This issue affects all versions prior to 1.2.3 and could lead to unauthorized transactions, exposure of sensitive financial data, and compromise of payment integrity.

Impact

Exploitation of this vulnerability could result in unauthorized transactions, exposure of sensitive financial information, and compromise of payment integrity.

Remediation

Users are advised to upgrade to version 1.2.3 or later. If an immediate upgrade is not possible, API access should be restricted to trusted networks or IP ranges, strict input validation should be enforced at the application layer, and transaction logs should be monitored for anomalies or suspicious activity.

Added: Feb 19, 2026, 9:11 PM
Updated: Feb 19, 2026, 9:11 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.0
remediation
0.0
relevance
3.2
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.