Midtrans Payment Gateway for Easy Digital Downloads Security & Risk Analysis

wordpress.org/plugins/edd-midtrans-gateway

Midtrans Payment Gateway for Easy Digital Downloads is official plugin from Midtrans, Payment Gateway. Brings secure and simple customer experience to …

20 active installs v2.5.0 PHP 5.2.4+ WP 3.9.1+ Updated Mar 3, 2021
credit-cardmidtranspaymentpayment-gatewaysnap
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Midtrans Payment Gateway for Easy Digital Downloads Safe to Use in 2026?

Generally Safe

Score 85/100

Midtrans Payment Gateway for Easy Digital Downloads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of edd-midtrans-gateway v2.5.0 reveals a generally strong security posture, particularly in its handling of SQL queries and its minimal attack surface. The absence of AJAX handlers, REST API routes, shortcodes, and cron events without proper authentication or permission checks is commendable. The presence of nonce checks further bolsters security. However, a significant concern arises from the output escaping, where only 49% of the 45 identified outputs are properly escaped. This could leave the plugin vulnerable to Cross-Site Scripting (XSS) attacks if user-supplied data is not handled carefully during output. The vulnerability history is also a positive indicator, with no known CVEs recorded, suggesting a well-maintained codebase. Despite the excellent history, the partial output escaping remains a notable weakness that requires attention. In conclusion, while the plugin demonstrates good security practices in several key areas, the insufficient output escaping presents a tangible risk that could be exploited.

Key Concerns

  • Insufficient output escaping
Vulnerabilities
None known

Midtrans Payment Gateway for Easy Digital Downloads Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Midtrans Payment Gateway for Easy Digital Downloads Release Timeline

v2.5.0Current
v2.3.1
v2.3.0
Code Analysis
Analyzed Mar 16, 2026

Midtrans Payment Gateway for Easy Digital Downloads Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
23
22 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

49% escaped45 total outputs
Attack Surface

Midtrans Payment Gateway for Easy Digital Downloads Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 25
filteredd_payment_gatewaysincludes\edd-midtrans-installment.php:19
filteredd_settings_sections_gatewaysincludes\edd-midtrans-installment.php:26
actionedd_midtrans_installment_cc_formincludes\edd-midtrans-installment.php:39
filteredd_settings_gatewaysincludes\edd-midtrans-installment.php:136
actionedd_gateway_midtrans_installmentincludes\edd-midtrans-installment.php:397
filteredd_payment_gatewaysincludes\edd-midtrans-installmentoff.php:19
filteredd_settings_sections_gatewaysincludes\edd-midtrans-installmentoff.php:28
actionedd_midtrans_offinstallment_cc_formincludes\edd-midtrans-installmentoff.php:41
filteredd_settings_gatewaysincludes\edd-midtrans-installmentoff.php:160
actionedd_gateway_midtrans_offinstallmentincludes\edd-midtrans-installmentoff.php:435
filteredd_payment_gatewaysincludes\edd-midtrans.php:19
filteredd_settings_sections_gatewaysincludes\edd-midtrans.php:28
actionedd_midtrans_cc_formincludes\edd-midtrans.php:41
filteredd_settings_gatewaysincludes\edd-midtrans.php:145
actionedd_gateway_midtransincludes\edd-midtrans.php:416
filteredd_currenciesmidtrans-standard.php:43
actionedd_midtrans_notificationmidtrans-standard.php:97
actioninitmidtrans-standard.php:142
actionedd_purchase_form_user_info_fieldsmidtrans-standard.php:155
filteredd_purchase_form_required_fieldsmidtrans-standard.php:168
actionedd_checkout_error_checksmidtrans-standard.php:179
filteredd_payment_metamidtrans-standard.php:192
actionedd_payment_personal_details_listmidtrans-standard.php:209
actionedd_add_email_tagsmidtrans-standard.php:218
filterthe_contentmidtrans-standard.php:261
Maintenance & Trust

Midtrans Payment Gateway for Easy Digital Downloads Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMar 3, 2021
PHP min version5.2.4
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Midtrans Payment Gateway for Easy Digital Downloads Developer Profile

Midtrans

2 plugins · 5K total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Midtrans Payment Gateway for Easy Digital Downloads

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/edd-midtrans-gateway/js/edd-midtrans-donate.js/wp-content/plugins/edd-midtrans-gateway/js/edd-midtrans.js/wp-content/plugins/edd-midtrans-gateway/css/edd-midtrans.css
Version Parameters
edd-midtrans-gateway/js/edd-midtrans-donate.js?ver=edd-midtrans-gateway/js/edd-midtrans.js?ver=edd-midtrans-gateway/css/edd-midtrans.css?ver=

HTML / DOM Fingerprints

CSS Classes
edd-midtrans-donate-form
HTML Comments
<!-- Midtrans Payment Gateway for Easy Digital Downloads --><!-- exit if opened directly --><!--|--------------------------------------------------------------------------|--><!--| CONSTANTS |-->+17 more
Data Attributes
id="edd-phone-wrap"class="edd-label"id="edd-phone"placeholder="Phone Number"class="edd-input"id="edd-phone"+5 more
JS Globals
window.Midtrans
FAQ

Frequently Asked Questions about Midtrans Payment Gateway for Easy Digital Downloads