Bleumi Payments for WC Vendors Marketplace Security & Risk Analysis

wordpress.org/plugins/bleumi-payments-for-wc-vendors-marketplace

Accept Traditional and Crypto Currency Payments in your WooCommerce store.

10 active installs v1.0.4 PHP 7.0+ WP 5.4+ Updated Feb 17, 2022
accept-crypto-paymentsbleumipayment-gatewaypayment-processingwoocommerce-plugin
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Bleumi Payments for WC Vendors Marketplace Safe to Use in 2026?

Generally Safe

Score 85/100

Bleumi Payments for WC Vendors Marketplace has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

Based on the static analysis and vulnerability history, the "bleumi-payments-for-wc-vendors-marketplace" plugin v1.0.4 appears to have a strong security posture with no immediately apparent critical vulnerabilities. The absence of dangerous functions, SQL injection risks due to prepared statements, and properly escaped output are all positive indicators. Furthermore, the plugin's vulnerability history shows no recorded CVEs, suggesting a commitment to security or a lack of past exploitation.

However, a significant concern arises from the complete lack of any identified entry points like AJAX handlers, REST API routes, or shortcodes, as well as the absence of nonce and capability checks. While this might mean a very limited attack surface, it's also highly unusual and could indicate that the analysis might have missed potential interaction points or that the plugin's functionality is extremely basic and doesn't require such checks. The lack of any identified taint flows is also a positive, but the zero total flows analyzed raises questions about the depth of the taint analysis.

In conclusion, the plugin demonstrates good security practices in the areas it was analyzed for. The absence of historical vulnerabilities is reassuring. However, the complete lack of identified entry points and checks warrants further investigation to ensure all potential interaction points are accounted for and secured, even if the current analysis suggests otherwise.

Key Concerns

  • No capability checks found
  • No nonce checks found
  • No AJAX handlers found
  • No REST API routes found
  • No shortcodes found
  • Zero taint flows analyzed
Vulnerabilities
None known

Bleumi Payments for WC Vendors Marketplace Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Bleumi Payments for WC Vendors Marketplace Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped3 total outputs
Attack Surface

Bleumi Payments for WC Vendors Marketplace Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterwc_bleumi_complete_paymentindex.php:12
filterwc_bleumi_process_paymentindex.php:17
filterwoocommerce_available_payment_gatewaysindex.php:46
filteredit_user_profile_updateindex.php:69
filterwcvendors_admin_before_bank_detailsindex.php:79
Maintenance & Trust

Bleumi Payments for WC Vendors Marketplace Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedFeb 17, 2022
PHP min version7.0
Downloads970

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Bleumi Payments for WC Vendors Marketplace Developer Profile

Bleumi

3 plugins · 20 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Bleumi Payments for WC Vendors Marketplace

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Data Attributes
wc_wcv_bleumi_vendor_id
FAQ

Frequently Asked Questions about Bleumi Payments for WC Vendors Marketplace