[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fNb5FTvXYPgnXX7GiKrHBz_92ppnhHvUlNVf6h804jrA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":14,"last_updated":15,"tested_up_to":16,"requires_at_least":17,"requires_php":18,"tags":19,"homepage":25,"download_link":26,"security_score":27,"vuln_count":28,"unpatched_count":29,"last_vuln_date":30,"fetched_at":31,"vulnerabilities":32,"developer":48,"crawl_stats":38,"alternatives":52,"analysis":141,"fingerprints":218},"coinpayments-payment-gateway-for-woocommerce","CoinPayments.net Payment Gateway for WooCommerce","1.0.18","CoinPayments","https:\u002F\u002Fprofiles.wordpress.org\u002Fcoinpayments\u002F","\u003Cp>This plugin implements a payment gateway for WooCommerce to let buyers pay with Bitcoin, Litecoin, Ripple, and other cryptocurrencies via CoinPayments.net.\u003C\u002Fp>\n","This plugin implements a payment gateway for WooCommerce to let buyers pay with Bitcoin, Litecoin, Ripple, and other cryptocurrencies via CoinPayments &hellip;",1000,61289,74,6,"2025-05-02T18:03:00.000Z","6.2.9","3.7.0","",[20,21,22,23,24],"altcoin","altcoins","bitcoin","dogecoin","litecoin","https:\u002F\u002Fwww.coinpayments.net\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcoinpayments-payment-gateway-for-woocommerce.zip",95,1,0,"2025-05-07 00:00:00","2026-03-15T15:16:48.613Z",[33],{"id":34,"url_slug":35,"title":36,"description":37,"plugin_slug":4,"theme_slug":38,"affected_versions":39,"patched_in_version":6,"severity":40,"cvss_score":41,"cvss_vector":42,"vuln_type":43,"published_date":30,"updated_date":44,"references":45,"days_to_patch":47},"CVE-2025-47532","coinpaymentsnet-payment-gateway-for-woocommerce-unauthenticated-php-object-injection","CoinPayments.net Payment Gateway for WooCommerce \u003C= 1.0.17 - Unauthenticated PHP Object Injection","The CoinPayments.net Payment Gateway for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.0.17 via deserialization of untrusted input via the 'custom' parameter. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.",null,"\u003C=1.0.17","critical",9.8,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:N\u002FUI:N\u002FS:U\u002FC:H\u002FI:H\u002FA:H","Deserialization of Untrusted Data","2025-05-13 15:00:07",[46],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002Fde9f28b9-121d-42d5-9a7c-9caa52eb2e32?source=api-prod",7,{"slug":49,"display_name":7,"profile_url":8,"plugin_count":28,"total_installs":11,"avg_security_score":27,"avg_patch_time_days":47,"trust_score":50,"computed_at":51},"coinpayments",97,"2026-04-05T19:07:16.220Z",[53,72,91,109,126],{"slug":54,"name":55,"version":56,"author":57,"author_profile":58,"description":59,"short_description":60,"active_installs":61,"downloaded":62,"rating":63,"num_ratings":28,"last_updated":64,"tested_up_to":65,"requires_at_least":66,"requires_php":18,"tags":67,"homepage":69,"download_link":70,"security_score":71,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"wp-faucet-direct","WP Faucet Direct","1.4","jose0912","https:\u002F\u002Fprofiles.wordpress.org\u002Fjose0912\u002F","\u003Cp>To use WP Faucet Direct you need to create an account at \u003Ca href=\"https:\u002F\u002Fgoo.gl\u002Fd4p2Kd\" rel=\"nofollow ugc\">Block.io\u003C\u002Fa> * (registration is free)\u003C\u002Fp>\n\u003Cp>Once you have created the account you will get your Key API and PIN of the currency you select, necessary for you to enter in the configuration panel of WP Faucet Direct\u003C\u002Fp>\n\u003Cp>This plugin supports Bitcoin, Litecoin and Dogecoin which are the same currencies that Block.io supports\u003C\u002Fp>\n\u003Cp>With WP Faucet Direct you can create your direct payment faucet in a simple way in your WordPress page by simply adding a shortcode in the section of the page where you want it to appear\u003C\u002Fp>\n\u003Cp>Full plugin features here: \u003Ca href=\"https:\u002F\u002Fgoo.gl\u002Fy2izHT\" rel=\"nofollow ugc\">seoland.es\u002Fplugin-faucet-direct\u003C\u002Fa>\u003C\u002Fp>\n","With WP Faucet Direct you can create your direct payment faucet in a simple way in your WordPress page by simply adding a shortcode in the section of  &hellip;",10,4036,100,"2017-09-21T23:04:00.000Z","4.8.28","1.0",[20,22,23,68,24],"faucet","https:\u002F\u002Fseoland.es\u002Fplugin-faucet-direct","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fwp-faucet-direct.1.4.zip",85,{"slug":73,"name":74,"version":75,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":80,"downloaded":81,"rating":63,"num_ratings":28,"last_updated":82,"tested_up_to":83,"requires_at_least":84,"requires_php":18,"tags":85,"homepage":89,"download_link":90,"security_score":63,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"gf-gourl-add-on","GoUrl Bitcoin Altcoin Payment Gateway For Gravity Forms","1.0.4","mohsin.id","https:\u002F\u002Fprofiles.wordpress.org\u002Fmohsinoffline\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fgourl.io\u002F\" rel=\"nofollow ugc\">GoUrl.io\u003C\u002Fa> Payment Gateway allows you to accept cryptocurrency payments from all over the world on your websites and deposit funds automatically into your external wallets. They support 13 different cryptocurrencies including Bitcoin, Bitcoin Cash, Dash and Litecoin.\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.gravityforms.com\u002F\" rel=\"nofollow ugc\">Gravity Forms\u003C\u002Fa> is one of the oldest most advanced custom form plugins in the WordPress sphere. Powering over a million websites, Gravity Forms allows you to quickly and easily integrate with a variety of third party services with a fantastic collection of add-ons.\u003C\u002Fp>\n\u003Cp>Here’s a list of what the plugin provides out of the box with the help of core GoUrl.io plugin:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Open Source\u003C\u002Fstrong>: 100% free Open Source plugin on \u003Ca href=\"https:\u002F\u002Fbitbucket.org\u002Fgateways\u002Fgf-gourl\" rel=\"nofollow ugc\">Bitbucket\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Secure Cryptocurrency Processing\u003C\u002Fstrong>: Securely process crypto coins without redirecting your customers to the gateway website. No need to worry about chargebacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple Coin Support\u003C\u002Fstrong>: Supports payments in Bitcoin, BitcoinCash, Litecoin, Dash, Dogecoin, Speedcoin, Reddcoin, Potcoin, Feathercoin, Vertcoin, Peercoin, and MonetaryUnit.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Easy Withdrawals\u003C\u002Fstrong>: Get crypto payments straight to your bitcoin\u002Faltcoin wallet addresses. Use your exchange wallet address for withdrawals and convert to fiat.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Conditional Payments\u003C\u002Fstrong>: Supports conditional statements in Gravity Forms.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Paid Posts\u003C\u002Fstrong>: Optionally lets you charge for posts by letting you publish them in Gravity Forms only after the payment is complete.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Logging\u003C\u002Fstrong>: Enable logging so you can debug issues that arise if any.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Requirements\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.gravityforms.com\u002F\" rel=\"nofollow ugc\">Gravity Forms\u003C\u002Fa> plugin 2.0 or later.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgourl-bitcoin-payment-gateway-paid-downloads-membership\u002F\" rel=\"ugc\">GoUrl Core\u003C\u002Fa> WordPress Plugin.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgourl.io\u002F\" rel=\"nofollow ugc\">GoUrl.io\u003C\u002Fa> account with payment boxes setup.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Extend, Contribute, Integrate\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Visit the \u003Ca href=\"https:\u002F\u002Fwpgateways.com\u002Fproducts\u002Fgourl-bitcoin-altcoin-gateway-gravity-forms\u002F\" rel=\"nofollow ugc\">plugin page\u003C\u002Fa> for more details. Contributors are welcome to send pull requests via \u003Ca href=\"https:\u002F\u002Fbitbucket.org\u002Fgateways\u002Fgf-gourl\u002F\" rel=\"nofollow ugc\">Bitbucket repository\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>For custom integration with your WordPress website, please \u003Ca href=\"https:\u002F\u002Fwpgateways.com\u002Fsupport\u002Fcustom-payment-gateway-integration\u002F\" rel=\"nofollow ugc\">contact us here\u003C\u002Fa>.\u003C\u002Fp>\n\u003Cp>Disclaimer: This plugin is not affiliated with or supported by Gravity Forms, GoUrl.io or any cryptocurrency developer or founder team. All logos and trademarks are the property of their respective owners.\u003C\u002Fp>\n","This plugin enables you to use the GoUrl.io payment gateway and accept bitcoin and other altcoins directly on your Gravity Forms powered custom forms  &hellip;",20,4243,"2025-12-04T01:58:00.000Z","6.9.4","4.0",[21,22,86,87,88],"cryptocurrency","gravity-forms","payment-gateway","https:\u002F\u002Fwpgateways.com\u002Fproducts\u002Fgourl-bitcoin-altcoin-gateway-gravity-forms\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgf-gourl-add-on.1.0.4.zip",{"slug":92,"name":93,"version":66,"author":94,"author_profile":95,"description":96,"short_description":97,"active_installs":61,"downloaded":98,"rating":63,"num_ratings":99,"last_updated":100,"tested_up_to":101,"requires_at_least":102,"requires_php":103,"tags":104,"homepage":107,"download_link":108,"security_score":71,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"alfacoins-for-woocommerce","ALFAcoins for WooCommerce","ALFAcoins","https:\u002F\u002Fprofiles.wordpress.org\u002Fwebt3ch\u002F","\u003Cp>Accept all major cryptocurrencies like Bitcoin, Ethereum, TRC-20 & ERC-20 Tether, TRX, Litecoin, XRP with ALFAcoins plugin for WooCommerce.\u003C\u002Fp>\n\u003Ch4>ALFAcoins features:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Select preferred cryptocurrencies (BTC, ETH, USDT, BNB, XRP, USDC, DOGE, TRX, DOT, BCH, LTC, DAI, ATOM, XLM, DASH) and start accepting cryptocurrency.\u003C\u002Fli>\n\u003Cli>Follow a straightforward set-up process, no technical expertise needed: \u003Ca href=\"https:\u002F\u002Fwww.alfacoins.com\u002Fhelp\u002Ftutorials\u002Fmerchant-how-to-integrate-cryptocurrency-payments-to-wordpress-with-woocommerce\" rel=\"nofollow ugc\">guide\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>Every transaction is displayed with an equivalent of your preferred fiat currency.\u003C\u002Fli>\n\u003Cli>Automate withdrawals by setting up preferred period and amount.\u003C\u002Fli>\n\u003Cli>Protect your account with a two-factor authentication (2FA) feature.\u003C\u002Fli>\n\u003Cli>Check your transactions’ history, statuses and fees. Export data and reports on the go.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Why ALFAcoins?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Hassle free account opening process, application review guaranteed within 24 hours.\u003C\u002Fli>\n\u003Cli>Submit your queries about integration, account or transaction management to our support team.\u003C\u002Fli>\n\u003Cli>Open your e-shop to customers worldwide preferring crypto payments.\u003C\u002Fli>\n\u003Cli>Real-time competitive cryptocurrency exchange rates.\u003C\u002Fli>\n\u003Cli>Financial reports about incoming and outgoing operations.\u003C\u002Fli>\n\u003Cli>Secure storage and instant transfers of your crypto assets.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.alfacoins.com\u002Fuser\u002Fregister\" rel=\"nofollow ugc\">Join\u003C\u002Fa> the digital payment revolution and expand your WooCommerce store’s potential with ALFAcoins. Embrace the opportunities of cryptocurrency and set your business up for success.\u003C\u002Fp>\n","Accept all major cryptocurrencies like Bitcoin, Ethereum, TRC-20 & ERC-20 Tether, TRX, Litecoin, XRP with ALFAcoins plugin for WooCommerce.",5474,3,"2024-02-29T14:31:00.000Z","6.5.8","4.3.1","7.4",[22,105,23,106,24],"crypto","ethereum","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Falfacoins-for-woocommerce\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Falfacoins-for-woocommerce.zip",{"slug":110,"name":111,"version":112,"author":113,"author_profile":114,"description":115,"short_description":116,"active_installs":61,"downloaded":117,"rating":63,"num_ratings":28,"last_updated":18,"tested_up_to":118,"requires_at_least":119,"requires_php":18,"tags":120,"homepage":123,"download_link":124,"security_score":63,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":125},"send-a-wow-dogecoin-donation","Send a Wow!","0.2.4","shibyville","https:\u002F\u002Fprofiles.wordpress.org\u002Fshibyville\u002F","\u003Cp>For a full description and a configuration reference visit (http:\u002F\u002Fwww.send-a-wow.org)\u003C\u002Fp>\n\u003Cp>Send a Wow! makes it easy for your visitors to transfer some money in the form of crypto currency as a thank you or as a Wow!-reaction for well written blog articles. It is preconfigured for the famoust digital currency dogecoin but can be also setuped for e.g bitcoin. It do not use any third services! It uses the decentralized way crypto currency is made for: A transfer from wallet to wallet. If you install the Send a Wow!-Plugin there will be a button under each of your blog article.\u003C\u002Fp>\n\u003Cp>If you prefer the button on the left side, add this to your css file:\u003C\u002Fp>\n\u003Cp>.saw-container {\u003C\u002Fp>\n\u003Cpre>\u003Ccode>float: none !important;\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Cp>}\u003C\u002Fp>\n","Send a Wow sets a donation button for cryptocoins like dogecoin, bitcoin and litecoin under every article in your blog.",6583,"3.9.40","3.8.3",[22,23,24,121,122],"send-a-wow","sendawow","http:\u002F\u002Fwww.send-a-wow.org","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsend-a-wow-dogecoin-donation.0.2.4.zip","2026-03-15T10:48:56.248Z",{"slug":127,"name":128,"version":129,"author":127,"author_profile":130,"description":131,"short_description":132,"active_installs":29,"downloaded":133,"rating":29,"num_ratings":29,"last_updated":134,"tested_up_to":135,"requires_at_least":17,"requires_php":18,"tags":136,"homepage":139,"download_link":140,"security_score":71,"vuln_count":29,"unpatched_count":29,"last_vuln_date":38,"fetched_at":31},"coinmall","CoinMall","1.0.0","https:\u002F\u002Fprofiles.wordpress.org\u002Fcoinmall\u002F","\u003Cp>CoinMall allows anyone with a WooCommerce store to instantly start accepting cryptocurrency payments. Not only that, but the plugin also supports Bitcoin Lightning Network payments, as well as the ability for CoinMall.com users to pay with their site balance directly.\u003C\u002Fp>\n","Accept cryptocurrency on your WooCommerce stores through CoinMall.com",4043,"2018-07-09T15:54:00.000Z","4.9.29",[21,22,137,138],"ecommerce","woocommerce","https:\u002F\u002Fwww.coinmall.com\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcoinmall.zip",{"attackSurface":142,"codeSignals":188,"taintFlows":201,"riskAssessment":202,"analyzedAt":217},{"hooks":143,"ajaxHandlers":176,"restRoutes":177,"shortcodes":186,"cronEvents":187,"entryPointCount":28,"unprotectedCount":28},[144,150,155,159,162,166,169,173],{"type":145,"name":146,"callback":147,"priority":29,"file":148,"line":149},"action","plugins_loaded","coinpayments_gateway_load","class-wc-gateway-coinpayments.php",28,{"type":151,"name":152,"callback":153,"file":148,"line":154},"filter","woocommerce_payment_gateways","wccoinpayments_add_gateway",39,{"type":145,"name":156,"callback":157,"file":148,"line":158},"woocommerce_receipt_coinpayments","receipt_page",96,{"type":145,"name":160,"callback":161,"file":148,"line":63},"woocommerce_api_wc_gateway_coinpayments","check_ipn_response",{"type":145,"name":163,"callback":164,"file":148,"line":165},"rest_api_init","closure",548,{"type":145,"name":167,"callback":164,"file":148,"line":168},"before_woocommerce_init",563,{"type":145,"name":170,"callback":171,"file":148,"line":172},"woocommerce_blocks_loaded","coinpayments_gateway_block_support",570,{"type":145,"name":174,"callback":164,"file":148,"line":175},"woocommerce_blocks_payment_method_type_registration",581,[],[178],{"namespace":179,"route":180,"methods":181,"callback":183,"permissionCallback":184,"file":148,"line":185},"wc\u002Fv3","\u002Fpayments\u002Fcoinpayments-gateway",[182],"POST","handle_coinpayments_gateway_payment","__return_true",549,[],[],{"dangerousFunctions":189,"sqlUsage":190,"outputEscaping":192,"fileOperations":28,"externalRequests":29,"nonceChecks":29,"capabilityChecks":29,"bundledLibraries":200},[],{"prepared":29,"raw":29,"locations":191},[],{"escaped":29,"rawEcho":193,"locations":194},2,[195,198],{"file":148,"line":196,"context":197},357,"raw output",{"file":148,"line":199,"context":197},359,[],[],{"summary":203,"deductions":204},"This plugin exhibits a concerning security posture primarily due to a significant lack of input validation and authorization checks, despite a clean taint analysis and no raw SQL queries. The static analysis reveals a single unprotected REST API route, which represents a direct entry point for potential attacks. Furthermore, none of the identified outputs are properly escaped, increasing the risk of cross-site scripting (XSS) vulnerabilities if user-supplied data is included in these outputs. The vulnerability history shows a past critical vulnerability related to deserialization, indicating a potential for complex and severe exploits if similar weaknesses are re-introduced. While the plugin demonstrates good practices in avoiding dangerous functions and utilizing prepared statements for SQL, the unprotected API route and poor output escaping are significant weaknesses that could be exploited. The absence of nonce and capability checks on the identified entry point is a critical oversight.",[205,208,211,213,215],{"reason":206,"points":207},"Unprotected REST API route",15,{"reason":209,"points":210},"No output escaping",8,{"reason":212,"points":47},"No nonce checks",{"reason":214,"points":47},"No capability checks",{"reason":216,"points":207},"Past critical deserialization CVE","2026-03-16T18:46:03.895Z",{"wat":219,"direct":228},{"assetPaths":220,"generatorPatterns":223,"scriptPaths":224,"versionParams":225},[221,222],"\u002Fwp-content\u002Fplugins\u002Fcoinpayments-payment-gateway-for-woocommerce\u002Fassets\u002Fcss\u002Fcoinpayments.css","\u002Fwp-content\u002Fplugins\u002Fcoinpayments-payment-gateway-for-woocommerce\u002Fassets\u002Fjs\u002Fcoinpayments.js",[],[222],[226,227],"coinpayments-payment-gateway-for-woocommerce\u002Fassets\u002Fcss\u002Fcoinpayments.css?ver=","coinpayments-payment-gateway-for-woocommerce\u002Fassets\u002Fjs\u002Fcoinpayments.js?ver=",{"cssClasses":229,"htmlComments":231,"htmlAttributes":232,"restEndpoints":235,"jsGlobals":237,"shortcodeOutput":239},[230],"coinpayments_payment_form",[],[233,234],"data-coinpayments-currency","data-coinpayments-amount",[236],"\u002Fwp-json\u002Fcoinpayments\u002Fv1\u002Fprocess",[238],"coinpayments_vars",[]]