
Up2pay e-Transactions WooCommerce Payment Gateway Security & Risk Analysis
wordpress.org/plugins/e-transactions-wcThis plugin is a Up2pay e-Transactions payment gateway for WooCommerce 4.x
Is Up2pay e-Transactions WooCommerce Payment Gateway Safe to Use in 2026?
Generally Safe
Score 100/100Up2pay e-Transactions WooCommerce Payment Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The e-transactions-wc plugin v3.0.9 demonstrates a generally strong security posture with robust practices in place. The static analysis reveals no direct SQL injection vulnerabilities due to the consistent use of prepared statements. Furthermore, the plugin has no recorded history of CVEs, suggesting a good track record of security awareness and maintenance. The presence of nonce and capability checks on all identified AJAX entry points is a significant strength, mitigating common attack vectors.
However, there are areas for improvement. A concerning finding is the taint analysis, which shows 5 out of 6 analyzed flows with unsanitized paths. While these did not escalate to critical or high severity in this analysis, this indicates a potential for vulnerabilities if user-supplied data is not handled with extreme care throughout the code. The output escaping, while at 81%, still leaves a significant portion of outputs potentially vulnerable to cross-site scripting (XSS) attacks if user input is involved in those unescaped outputs.
In conclusion, e-transactions-wc v3.0.9 is well-protected against common direct injection and authentication bypass issues. The absence of past vulnerabilities is reassuring. The primary risk lies in the unsanitized data flows, which, despite not currently leading to exploitable vulnerabilities in this version, represent a latent risk that requires diligent developer attention. The moderate percentage of unescaped output also warrants careful review to prevent potential XSS.
Key Concerns
- Flows with unsanitized paths in taint analysis
- Unescaped output percentage is below ideal threshold
Up2pay e-Transactions WooCommerce Payment Gateway Security Vulnerabilities
Up2pay e-Transactions WooCommerce Payment Gateway Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Up2pay e-Transactions WooCommerce Payment Gateway Attack Surface
AJAX Handlers 4
WordPress Hooks 33
Maintenance & Trust
Up2pay e-Transactions WooCommerce Payment Gateway Maintenance & Trust
Maintenance Signals
Community Trust
Up2pay e-Transactions WooCommerce Payment Gateway Alternatives
Paybox WooCommerce Payment Gateway
paybox-woocommerce-gateway
This plugin is a Paybox payment gateway for WooCommerce 4.x
Sofinco 3XCB
wc-sofinco-3xcb
This plugin is a Sofinco 3x CB payment gateway for WooCommerce
HyperPay Payments
hyperpay-gateways
Payments Gateways provided by Gate2Play, to make you able to add Credit Card, Mada, STCpay and more payments method.
KueskiPay Gateway
kueskipay-gateway
Add Kueski gateway to buy now and pay later on your store.
Avify
avify
Connect your WooCommerce account to Avify and send all your orders to one centralized inventory.
Up2pay e-Transactions WooCommerce Payment Gateway Developer Profile
3 plugins · 5K total installs
How We Detect Up2pay e-Transactions WooCommerce Payment Gateway
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/e-transactions-wc/assets/build/checkout-page.css/wp-content/plugins/e-transactions-wc/assets/build/checkout-page.js/wp-content/plugins/e-transactions-wc/assets/build/checkout-page.jse-transactions-wc/assets/build/checkout-page.css?ver=e-transactions-wc/assets/build/checkout-page.js?ver=HTML / DOM Fingerprints
wc-etransactions-checkout-pagedata-wc-etransactions-plugin-urlwc_etransactions