
Gateway for Robokassa and Easy Digital Downloads Lite Security & Risk Analysis
wordpress.org/plugins/edd-robokassa-liteThis plugin adds the Robokassa payment gateway for the Easy Digital Downloads digital product plugin. Robokassa is a leading service for receiving pay …
Is Gateway for Robokassa and Easy Digital Downloads Lite Safe to Use in 2026?
Generally Safe
Score 85/100Gateway for Robokassa and Easy Digital Downloads Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "edd-robokassa-lite" v1.0 plugin exhibits a very strong security posture based on the static analysis. The complete absence of dangerous functions, SQL queries without prepared statements, file operations, external HTTP requests, and the full utilization of output escaping are excellent indicators of secure coding practices. Furthermore, the plugin has no recorded vulnerability history, suggesting a history of stable and secure releases.
However, the analysis does highlight a significant area of concern: two flows with unsanitized paths. While no critical or high severity issues were identified from these taint flows, the presence of unsanitized paths in any part of the code, especially without accompanying input validation or sanitization, presents a latent risk. The complete lack of nonce and capability checks on its entry points (AJAX handlers, REST API routes, shortcodes, cron events) is also a notable weakness. This means that any potential future functionality added to these entry points would be entirely unprotected, leaving them vulnerable to unauthorized access or manipulation.
In conclusion, while the current version of "edd-robokassa-lite" v1.0 is exceptionally well-coded in terms of direct vulnerabilities and has a clean historical record, the identified unsanitized paths and the complete absence of authentication/authorization checks on its entry points represent potential security weaknesses that should be addressed. The plugin's strengths lie in its clean code and vulnerability-free history, but its weaknesses are in the potential for future exploitation through unprotected entry points and the presence of unsanitized paths.
Key Concerns
- Unsanitized path found in taint flow
- Unsanitized path found in taint flow
- No capability checks on entry points
- No nonce checks on entry points
Gateway for Robokassa and Easy Digital Downloads Lite Security Vulnerabilities
Gateway for Robokassa and Easy Digital Downloads Lite Release Timeline
Gateway for Robokassa and Easy Digital Downloads Lite Code Analysis
Output Escaping
Data Flow Analysis
Gateway for Robokassa and Easy Digital Downloads Lite Attack Surface
WordPress Hooks 11
Maintenance & Trust
Gateway for Robokassa and Easy Digital Downloads Lite Maintenance & Trust
Maintenance Signals
Community Trust
Gateway for Robokassa and Easy Digital Downloads Lite Alternatives
Gateway for Interkassa and Easy Digital Downloads
edd-gateway-interkassa
This plugin adds the Interkassa payment gateway for the Easy Digital Downloads digital product plugin. Interkassa is an aggregator of payment methods.
TriPay Payment Gateway
tripay-payment-gateway
TriPay Payment adalah payment gateway indonesia yang menyediakan beragam metode pembayaran seperti virtual account, convenience store, e-wallet, dll
Ovic Pinmap
ovic-pinmap
Need support? [Contact Us](https://kutethemes.com/contact-us/ "Contact Us")
ShipperHQ: Shipping & Checkout Experience Solution
woo-shipperhq
Control the shipping rates and options you show in your WooCommerce cart. Live rates from 30+ carriers, LTL Freight and custom rates.
Easy Digital Downloads – Empty Cart
easy-digital-downloads-empty-cart
Easily add content to the empty cart display in Easy Digital Downloads.
Gateway for Robokassa and Easy Digital Downloads Lite Developer Profile
6 plugins · 20 total installs
How We Detect Gateway for Robokassa and Easy Digital Downloads Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/edd-robokassa-lite/rb_icon.png