
Bayarcash for Fluent Forms Security & Risk Analysis
wordpress.org/plugins/bayarcash-for-fluent-formsIntegrate Bayarcash payment gateway with Fluent Forms to accept payments in Malaysia via FPX, DuitNow, and other local payment methods.
Is Bayarcash for Fluent Forms Safe to Use in 2026?
Generally Safe
Score 100/100Bayarcash for Fluent Forms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "bayarcash-for-fluent-forms" plugin version 2.0.4 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries, having no recorded vulnerabilities (CVEs), and performing a significant number of output escaps. The absence of dangerous functions and file operations is also commendable. However, there are notable concerns regarding its attack surface. The plugin exposes 7 AJAX handlers, with 2 of them lacking proper authentication checks. This is a significant risk as it could allow unauthenticated users to trigger potentially sensitive actions. While taint analysis revealed no critical or high severity unsanitized paths, the unprotected AJAX endpoints create an avenue for exploitation that could be amplified if sensitive data is processed or modified through them. The presence of 14 nonce checks and 2 capability checks is positive, but they are not applied to all entry points, particularly the 2 AJAX handlers. The plugin's history of zero known vulnerabilities is a strong indicator of generally sound development, but the current findings of unprotected AJAX handlers suggest that continued vigilance is necessary.
Key Concerns
- AJAX handlers without auth checks
- Moderate output escaping coverage (70%)
Bayarcash for Fluent Forms Security Vulnerabilities
Bayarcash for Fluent Forms Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Bayarcash for Fluent Forms Attack Surface
AJAX Handlers 7
WordPress Hooks 52
Maintenance & Trust
Bayarcash for Fluent Forms Maintenance & Trust
Maintenance Signals
Community Trust
Bayarcash for Fluent Forms Alternatives
Bayarcash for FluentCart
bayarcash-for-fluentcart
Accept payments via Bayarcash payment gateway for FluentCart. Supports FPX, DuitNow QR, and other Malaysian payment methods.
toyyibPay for WooCommerce
toyyibpay-for-woocommerce
The official toyyibPay payment gateway plugin for WooCommerce — enabling Malaysian merchants to accept secure online payments with ease.
Payex Payment Gateway for Woocommerce
payex-payment-gateway-for-woocommerce
With Payex, you can now accept payments from Malaysia & oversea customers via FPX, Cards (Visa/MC/UnionPay), EWallets, Instalments and Subscriptio …
SecurePay For WooCommerce
securepay
SecurePay payment platform plugin for WooCommerce.
CHIP for Gravity Forms
chip-for-gravity-forms
CHIP - Digital Finance Platform. Securely accept one-time payments with CHIP for Gravity Forms.
Bayarcash for Fluent Forms Developer Profile
3 plugins · 60 total installs
How We Detect Bayarcash for Fluent Forms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bayarcash-for-fluent-forms/includes/js/bayarcash-fluent-forms.js/wp-content/plugins/bayarcash-for-fluent-forms/includes/codestar-framework/classes/setup.class.phpincludes/js/bayarcash-fluent-forms.jsbayarcash-fluent-forms.js?ver=HTML / DOM Fingerprints
bayarcashFF