
Accept Donations with bKash Payment Security & Risk Analysis
wordpress.org/plugins/accept-donations-with-bkash-paymentEasily accept donations through bKash with this lightweight and secure WordPress plugin.
Is Accept Donations with bKash Payment Safe to Use in 2026?
Generally Safe
Score 92/100Accept Donations with bKash Payment has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "accept-donations-with-bkash-payment" v1.0.1 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, and significant output unescaping issues are positive indicators. The presence of nonce checks and a lack of critical taint flows further bolster its security. However, a notable concern is the complete absence of capability checks across all identified entry points (AJAX handlers, shortcodes). This means that any user, regardless of their role or permissions, could potentially interact with these plugin functionalities. While the attack surface itself is small and there are no unprotected entry points from an authentication perspective, the lack of authorization checks is a significant weakness that could be exploited if any of these functionalities have sensitive operations or data exposure potential.
The vulnerability history is clean, with no recorded CVEs. This suggests a proactive approach to security by the developers or a lack of publicly known vulnerabilities. However, the absence of vulnerabilities does not guarantee complete security, especially in conjunction with the identified authorization gaps. The plugin's reliance on external HTTP requests is a potential vector for supply chain attacks or man-in-the-middle attacks if not handled with proper validation and encryption, although the analysis doesn't provide details on the nature of these requests.
In conclusion, the plugin has strong foundations in secure coding practices regarding SQL and output handling. The lack of historical vulnerabilities is reassuring. The primary and most significant weakness lies in the absence of capability checks, which creates an authorization risk. Addressing this oversight by implementing appropriate WordPress capability checks for all AJAX handlers and shortcodes would significantly enhance the plugin's security.
Key Concerns
- Missing capability checks on entry points
Accept Donations with bKash Payment Security Vulnerabilities
Accept Donations with bKash Payment Code Analysis
Output Escaping
Accept Donations with bKash Payment Attack Surface
AJAX Handlers 4
Shortcodes 2
WordPress Hooks 6
Maintenance & Trust
Accept Donations with bKash Payment Maintenance & Trust
Maintenance Signals
Community Trust
Accept Donations with bKash Payment Alternatives
GiveWP – Donation Plugin and Fundraising Platform
give
Accept donations and begin fundraising with GiveWP, the highest rated WordPress donation plugin for online giving.
Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More
charitable
The best WordPress donation plugin. Create fundraising donation forms, accept recurring donations, easy donor management, add crowdfunding, and more.
Donorbox – Free Recurring Donation Plugin and Fundraising Platform
donorbox-donation-form
Donorbox is a powerful and secure donation management plugin for WordPress. We are the only donation plugin for WordPress that offers a fast feature-f …
GiveWP Donation Widgets for Elementor
givewp-donation-widgets-for-elementor
A GiveWP add-on which allows you to embed any GiveWP shortcode into your Elementor-powered pages.
Donation Platform for WooCommerce: Fundraising & Donation Management
wc-donation-platform
Open source donation system for your fundraising that supports recurring donations and more
Accept Donations with bKash Payment Developer Profile
2 plugins · 10 total installs
How We Detect Accept Donations with bKash Payment
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/accept-donations-with-bkash-payment/assets/css/style.css/wp-content/plugins/accept-donations-with-bkash-payment/assets/js/script.js/wp-content/plugins/accept-donations-with-bkash-payment/assets/css/admin-style.css/wp-content/plugins/accept-donations-with-bkash-payment/assets/js/script.jsaccept-donations-with-bkash-payment/assets/css/style.css?ver=accept-donations-with-bkash-payment/assets/js/script.js?ver=HTML / DOM Fingerprints
toggle-switchslidername="adbkp_sandbox_mode"name="adbkp_username"name="adbkp_password"name="adbkp_app_key"name="adbkp_app_secret"adbkp_ajax