Easy Digital Downloads PayPal Payment Security & Risk Analysis

wordpress.org/plugins/edd-paypal-payment

Easy Digital Downloads PayPal Payment.

10 active installs v1.0.0 PHP + WP 3.0+ Updated Apr 7, 2017
gatewaypayment-gatewaypaypalpaypal-paymentpaypal-pro
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Digital Downloads PayPal Payment Safe to Use in 2026?

Generally Safe

Score 85/100

Easy Digital Downloads PayPal Payment has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The static analysis of edd-paypal-payment v1.0.0 reveals a generally positive security posture, with no critical vulnerabilities detected in code signals or taint analysis. The absence of dangerous functions, all SQL queries utilizing prepared statements, and proper output escaping are strong indicators of good coding practices. Furthermore, the plugin has no recorded vulnerability history, including CVEs, which suggests a history of secure development or minimal exposure. The limited attack surface is also a positive sign.

However, there are areas for improvement. The complete lack of nonce checks and capability checks is a significant concern, especially given the presence of file operations and external HTTP requests. While the static analysis didn't identify specific exploitable flows without these checks in this version, it represents a foundational security gap that could be exploited if the plugin's functionality evolves or if other security layers are bypassed. The absence of these critical security mechanisms makes the plugin more susceptible to certain types of attacks if new entry points are introduced or if existing ones are found to be vulnerable in a future iteration.

In conclusion, edd-paypal-payment v1.0.0 is currently in a good state with no immediate, critical vulnerabilities evident. Its adherence to secure coding practices for SQL and output is commendable, and the lack of past vulnerabilities is reassuring. Nevertheless, the absence of nonce and capability checks represents a notable weakness that warrants attention to prevent potential future exploits.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Easy Digital Downloads PayPal Payment Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Easy Digital Downloads PayPal Payment Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
4
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Easy Digital Downloads PayPal Payment Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionplugins_loadedincludes\class-paypal-edd.php:146
actionadmin_enqueue_scriptsincludes\class-paypal-edd.php:160
actionadmin_enqueue_scriptsincludes\class-paypal-edd.php:161
filteredd_payment_gatewaysincludes\class-paypal-edd.php:167
filteredd_settings_sections_gatewaysincludes\class-paypal-edd.php:168
filteredd_settings_gatewaysincludes\class-paypal-edd.php:169
actionwp_enqueue_scriptsincludes\class-paypal-edd.php:183
actionwp_enqueue_scriptsincludes\class-paypal-edd.php:184
actionedd_gateway_paypal_edd_paypal_proincludes\class-paypal-edd.php:190
Maintenance & Trust

Easy Digital Downloads PayPal Payment Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedApr 7, 2017
PHP min version
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Easy Digital Downloads PayPal Payment Developer Profile

Jayesh Parejiya

2 plugins · 110 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Digital Downloads PayPal Payment

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/edd-paypal-payment/admin/css/paypal-edd-admin.css/wp-content/plugins/edd-paypal-payment/admin/js/paypal-edd-admin.js
Version Parameters
paypal-edd-admin.css?ver=paypal-edd-admin.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Easy Digital Downloads PayPal Payment