Desconto Automático por Método de Pagamento | Cyfer Security & Risk Analysis

wordpress.org/plugins/cyfer-automatic-discount-per-payment-method

Apply automatic discounts based on the selected payment method in WooCommerce without using coupons.

60 active installs v1.0.1 PHP 7.0+ WP 5.0+ Updated Jan 24, 2026
discountdiscount-per-paymentpaymentpayment-methodwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Desconto Automático por Método de Pagamento | Cyfer Safe to Use in 2026?

Generally Safe

Score 100/100

Desconto Automático por Método de Pagamento | Cyfer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "cyfer-automatic-discount-per-payment-method" plugin v1.0.1 exhibits a mixed security posture. While it demonstrates good practices in its handling of SQL queries (100% prepared statements) and output escaping (96%), the presence of two AJAX handlers without authentication checks is a significant concern. This creates direct entry points into the application that could be exploited by unauthenticated users. The taint analysis shows no concerning flows, which is positive, and the plugin has no recorded vulnerability history, suggesting a relatively clean track record so far. However, the lack of authentication on critical entry points outweighs these strengths, making it susceptible to potential attacks that could manipulate discount logic or other functionalities exposed via these AJAX endpoints. The plugin relies on a bundled library, Select2, whose version is not specified, which could be a minor concern if it's an older, known-vulnerable version, though no specific issues are highlighted in the provided data.

Key Concerns

  • AJAX handlers without auth checks
  • Bundled library (Select2) version unknown
Vulnerabilities
None known

Desconto Automático por Método de Pagamento | Cyfer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Desconto Automático por Método de Pagamento | Cyfer Release Timeline

v1.0.1Current
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Desconto Automático por Método de Pagamento | Cyfer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
27 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

96% escaped28 total outputs
Attack Surface
2 unprotected

Desconto Automático por Método de Pagamento | Cyfer Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_update_payment_discountincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:112
noprivwp_ajax_update_payment_discountincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:113
WordPress Hooks 14
actionbefore_woocommerce_initcyfer-automatic-discount-per-payment-method.php:73
actionadmin_noticescyfer-automatic-discount-per-payment-method.php:82
actionplugins_loadedcyfer-automatic-discount-per-payment-method.php:87
filterplugin_row_metaincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:65
actionadmin_enqueue_scriptsincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:93
actionadmin_enqueue_scriptsincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:94
actionadmin_menuincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:95
actionadmin_initincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:96
actionwp_enqueue_scriptsincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:109
actionwp_enqueue_scriptsincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:110
actionwoocommerce_cart_calculate_feesincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:111
actionwoocommerce_before_checkout_formincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:114
actionwoocommerce_cart_updatedincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:115
actionplugins_loadedincludes\class-cyfer-desconto-automatico-por-metodo-de-pagamento.php:126
Maintenance & Trust

Desconto Automático por Método de Pagamento | Cyfer Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 24, 2026
PHP min version7.0
Downloads505

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

Desconto Automático por Método de Pagamento | Cyfer Developer Profile

Fernando Filho

5 plugins · 270 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Desconto Automático por Método de Pagamento | Cyfer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cyfer-automatic-discount-per-payment-method/admin/css/select2.min.css/wp-content/plugins/cyfer-automatic-discount-per-payment-method/admin/css/cyfer-desconto-automatico-por-metodo-de-pagamento-admin.css/wp-content/plugins/cyfer-automatic-discount-per-payment-method/admin/js/select2.min.js/wp-content/plugins/cyfer-automatic-discount-per-payment-method/admin/js/cyfer-desconto-automatico-por-metodo-de-pagamento-admin.js
Script Paths
admin/js/select2.min.jsadmin/js/cyfer-desconto-automatico-por-metodo-de-pagamento-admin.js
Version Parameters
cyfer-automatic-discount-per-payment-method/admin/css/select2.min.css?ver=4.1.0cyfer-automatic-discount-per-payment-method/admin/css/cyfer-desconto-automatico-por-metodo-de-pagamento-admin.css?ver=cyfer-automatic-discount-per-payment-method/admin/js/select2.min.js?ver=4.1.0cyfer-automatic-discount-per-payment-method/admin/js/cyfer-desconto-automatico-por-metodo-de-pagamento-admin.js?ver=

HTML / DOM Fingerprints

JS Globals
cyfer_desconto_admin_i18n
FAQ

Frequently Asked Questions about Desconto Automático por Método de Pagamento | Cyfer