
Bitcoin Payments – Blockonomics Security & Risk Analysis
wordpress.org/plugins/blockonomics-bitcoin-paymentsAccept Bitcoin/USDT payments on your WooCommerce website. Crypto payments go directly to your wallet.
Is Bitcoin Payments – Blockonomics Safe to Use in 2026?
Generally Safe
Score 99/100Bitcoin Payments – Blockonomics has a strong security track record. Known vulnerabilities have been patched promptly.
The 'blockonomics-bitcoin-payments' plugin v3.9.0 presents a mixed security posture. While it demonstrates some good practices, such as a significant percentage of SQL queries using prepared statements and a good number of nonce and capability checks in its code, there are notable areas of concern. The presence of an unprotected AJAX handler is a significant risk, as it represents an entry point that could be exploited without proper authentication. Furthermore, the taint analysis reveals a concerning trend of unsanitized paths in all analyzed flows, although thankfully, these did not escalate to critical or high severity vulnerabilities in this scan. The vulnerability history indicates past issues with Cross-Site Scripting (XSS), with two medium severity CVEs recorded. The fact that the most recent vulnerability was in January 2023 and is currently unpatched suggests a potential for lingering security weaknesses or a lack of consistent security maintenance. In conclusion, while the plugin has areas of strength, the unprotected AJAX endpoint and the patterns identified in taint analysis, combined with past XSS vulnerabilities, necessitate careful attention to mitigate potential risks.
Key Concerns
- Unprotected AJAX handler found
- All taint flows have unsanitized paths
- Medium severity CVEs in vulnerability history
- 57% output escaping is not properly escaped
- 0 capability checks found
Bitcoin Payments – Blockonomics Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
WordPress Bitcoin Payments – Blockonomics <= 3.5.7 - Reflected Cross-Site Scripting
WordPress Bitcoin Payments – Blockonomics <= 3.2 - Reflected Cross-Site Scripting
Bitcoin Payments – Blockonomics Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Bitcoin Payments – Blockonomics Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 27
Maintenance & Trust
Bitcoin Payments – Blockonomics Maintenance & Trust
Maintenance Signals
Community Trust
Bitcoin Payments – Blockonomics Alternatives
GoUrl Bitcoin Payment Gateway & Paid Downloads & Membership
gourl-bitcoin-payment-gateway-paid-downloads-membership
GoUrl Official Bitcoin/Altcoin Payment Gateway for Wordpress. Accept Bitcoin, Bitcoin Cash, Litecoin, Dash, Dogecoin, etc. Payments Online
Acceptcoin
accept-coin
Acceptcoin is an innovative integrated payment gateway for accepting cryptocurrencies as payment for the purchase of goods and services on the seller& …
GoUrl WooCommerce – Bitcoin Altcoin Payment Gateway Addon
gourl-woocommerce-bitcoin-altcoin-payment-gateway-addon
Provides Bitcoin/Altcoin Payment Gateway for WooCommerce 2.1+ or higher. White Label Product. Accept Bitcoin, Bitcoin Cash, Bitcoin SV, Litecoin, Dash …
Speed Bitcoin and Stablecoin Payments for WooCommerce
speed-accept-bitcoin-payments
Start accepting bitcoin or stablecoin payments instantly on your platform using Speed, without exchange rate volatility risk.
Bitcoin Payments for WP WooCommerce
bitcoin-payments-for-wp-woocommerce
Bitcoin Payments for WooCommerce is a Wordpress plugin that allows to accept bitcoins at WooCommerce-powered online stores.
Bitcoin Payments – Blockonomics Developer Profile
2 plugins · 3K total installs
How We Detect Bitcoin Payments – Blockonomics
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/blockonomics-bitcoin-payments/css/admin.css/wp-content/plugins/blockonomics-bitcoin-payments/js/admin.js/wp-content/plugins/blockonomics-bitcoin-payments/css/admin-setup.css/wp-content/plugins/blockonomics-bitcoin-payments/js/admin.jsblockonomics-bitcoin-payments/style.css?ver=blockonomics-bitcoin-payments/script.js?ver=HTML / DOM Fingerprints
blockonomics-payment-formblockonomics-addressblockonomics-qr-codeblockonomics-qrcodeblockonomics-deposit<!-- Blockonomics Payment Section --><!-- Blockonomics QR Code -->data-blockonomics-addressdata-blockonomics-amountdata-blockonomics-payment-idblockonomics_params/wp-json/blockonomics/v1/payment[blockonomics_payment]