
Craftgate Payment Gateway Security & Risk Analysis
wordpress.org/plugins/craftgate-payment-gatewayCraftgate ödeme geçidini kullanarak WooCommerce üzerinden kolayca ödeme almanızı sağlayan teknik entegrasyon.
Is Craftgate Payment Gateway Safe to Use in 2026?
Generally Safe
Score 92/100Craftgate Payment Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "craftgate-payment-gateway" v1.0.13 exhibits a mixed security posture. On the positive side, there are no known CVEs, indicating a generally clean history and likely good development practices regarding known vulnerabilities. The static analysis shows a complete absence of a traditional attack surface from AJAX handlers, REST API routes, shortcodes, and cron events, which is a significant strength. Furthermore, all SQL queries are prepared, and there are no external HTTP requests, reducing common attack vectors. However, several areas raise concerns. The output escaping is alarmingly low at only 13%, meaning a large percentage of output is likely unescaped, posing a risk of Cross-Site Scripting (XSS) vulnerabilities. The presence of 3 unsanitized paths in the taint analysis, even without critical or high severity, suggests potential issues where user-supplied data might be improperly handled, leading to unexpected behavior or security flaws. The lack of nonce checks and capability checks across any entry points, combined with the 0 total entry points without auth checks (which seems to imply there are no protected entry points if there are no entry points at all), suggests a potential over-reliance on the assumption that no external interaction is needed, which could be problematic if new entry points are ever introduced or if indirect pathways exist. The single file operation also warrants closer inspection for potential path traversal or insecure file handling.
Key Concerns
- Low output escaping percentage
- Unsanitized paths in taint analysis
- No nonce checks
- No capability checks
Craftgate Payment Gateway Security Vulnerabilities
Craftgate Payment Gateway Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Craftgate Payment Gateway Attack Surface
WordPress Hooks 12
Maintenance & Trust
Craftgate Payment Gateway Maintenance & Trust
Maintenance Signals
Community Trust
Craftgate Payment Gateway Alternatives
Paycell Payment Gateway
paycell-payment-gateway
An integration that enables you to receive secure and fast payments in your WooCommerce store through the Paycell infrastructure.
Paystack WooCommerce Payment Gateway
woo-paystack
Paystack for WooCommerce allows your WooCommerce store to accept secure payments from multiple local and global payment channels.
elegro Crypto Payment
elegro-payment
Increase your customers base by accepting cryptocurrencies.
Montonio for WooCommerce
montonio-for-woocommerce
Montonio is a complete checkout solution for online stores that includes all popular payment methods (local banks, card payments, Apple Pay, Google Pa …
NETOPIA Payments Payment Gateway
netopia-payments-payment-gateway
NETOPIA Payments Payment Gateway extends WooCommerce payment options by adding NETOPIA's Payment Gateway options.
Craftgate Payment Gateway Developer Profile
1 plugin · 10 total installs
How We Detect Craftgate Payment Gateway
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/craftgate-payment-gateway/assets/images/card-brands.pngcraftgate-payment-gateway/assets/images/card-brands.png?ver=HTML / DOM Fingerprints
iframe srcwindow.addEventListener/wp-json/craftgate_gateway/