
CamooPay for e-Commerce – Mobile Money Gateway Security & Risk Analysis
wordpress.org/plugins/camoo-pay-for-ecommerceA secure and seamless plugin to receive and manage Cash, Mobile, and Card payments in Cameroon on your e-shop or website
Is CamooPay for e-Commerce – Mobile Money Gateway Safe to Use in 2026?
Generally Safe
Score 100/100CamooPay for e-Commerce – Mobile Money Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The camoo-pay-for-ecommerce plugin v1.0.9 exhibits a mixed security posture. While it demonstrates good practices such as having no known critical or high severity vulnerabilities in its history and a high percentage of properly escaped output, there are concerning areas related to its attack surface. The plugin has one unprotected REST API route, which represents a significant potential entry point for attackers. The lack of an explicit permission callback on this route means that any unauthenticated user could potentially interact with it, leading to unintended consequences or exploitation.
Despite the absence of dangerous functions or critical taint analysis findings, the unprotected REST API route is the primary security concern. The presence of SQL queries without prepared statements, even if only one, also warrants attention as it could be a vector for SQL injection if exploited. However, the plugin does implement nonce and capability checks, which are positive security measures. The clean vulnerability history is a good sign, suggesting the developers have historically been diligent about security, but the current findings require remediation.
In conclusion, while the plugin benefits from a lack of historical vulnerabilities and good output escaping, the unprotected REST API route presents a clear and present risk. This, combined with the single instance of raw SQL, lowers its overall security score. Developers should prioritize securing this entry point and ensuring all database queries are properly prepared to mitigate potential security threats.
Key Concerns
- Unprotected REST API route without permission callbacks
- 100% of SQL queries not using prepared statements
CamooPay for e-Commerce – Mobile Money Gateway Security Vulnerabilities
CamooPay for e-Commerce – Mobile Money Gateway Code Analysis
SQL Query Safety
Output Escaping
CamooPay for e-Commerce – Mobile Money Gateway Attack Surface
AJAX Handlers 1
REST API Routes 1
WordPress Hooks 20
Maintenance & Trust
CamooPay for e-Commerce – Mobile Money Gateway Maintenance & Trust
Maintenance Signals
Community Trust
CamooPay for e-Commerce – Mobile Money Gateway Alternatives
Campay Woocommerce Payment Gateway
campay-api
CamPay is a Fintech service of the company TAKWID
CamPay Give Donation Payment Gateway
campay-give
CamPay is a Fintech service of the company TAKWID
CamPay Shortcode Payment Gateway
campay-shortcode-payment-gateway
CamPay is a Fintech service of the company TAKWID
Gateway Payougo Checkout
gateway-payougo-checkout
With Payougo, easyly accept secure Orange Money & MTN Mobile Money payments from Cameroon subscribers on your web store.
SoleasPay payment gateway for WooCommerce
soleaspay-payment-gateway-for-woocommerce
SoleasPay - Payment gateway for WooCommerce
CamooPay for e-Commerce – Mobile Money Gateway Developer Profile
4 plugins · 310 total installs
How We Detect CamooPay for e-Commerce – Mobile Money Gateway
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/camoo-pay-for-ecommerce/assets/css/camoo-pay-for-ecommerce-admin.css/wp-content/plugins/camoo-pay-for-ecommerce/assets/js/camoo-pay-for-ecommerce-admin.js/wp-content/plugins/camoo-pay-for-ecommerce/assets/js/camoo-pay-for-ecommerce.js/wp-content/plugins/camoo-pay-for-ecommerce/assets/js/camoo-pay-for-ecommerce-admin.js/wp-content/plugins/camoo-pay-for-ecommerce/assets/js/camoo-pay-for-ecommerce.js/wp-content/plugins/camoo-pay-for-ecommerce/assets/css/camoo-pay-for-ecommerce-admin.css?ver=/wp-content/plugins/camoo-pay-for-ecommerce/assets/js/camoo-pay-for-ecommerce-admin.js?ver=/wp-content/plugins/camoo-pay-for-ecommerce/assets/js/camoo-pay-for-ecommerce.js?ver=HTML / DOM Fingerprints
wc-camoo-paydata-camoo-pay-keydata-camoo-pay-secretWC_CamooPay_GatewaycamooPay