Frinext Scan & Pay Security & Risk Analysis

wordpress.org/plugins/frinextqr

Manual UPI Scan & Pay payment gateway for WooCommerce with QR code and payment proof upload.

0 active installs v1.1.2 PHP 7.4+ WP 5.8+ Updated Mar 15, 2026
indiapayment-gatewayqr-codeupiwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Frinext Scan & Pay Safe to Use in 2026?

Generally Safe

Score 100/100

Frinext Scan & Pay has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 19d ago
Risk Assessment

The frinextqr v1.1.2 plugin exhibits a generally positive security posture based on the static analysis provided. The absence of identified AJAX handlers, REST API routes, shortcodes, and cron events with unprotected entry points suggests a well-contained attack surface. The code also shows a high percentage of properly escaped outputs and a significant number of nonce checks, indicating good development practices for preventing common web vulnerabilities. Furthermore, the lack of identified dangerous functions, file operations, external HTTP requests, and critical or high-severity taint flows is reassuring.

However, a notable concern arises from the presence of SQL queries that are not using prepared statements. While the total number of SQL queries is low, the absence of prepared statements for any SQL interaction represents a potential risk for SQL injection vulnerabilities. The vulnerability history being completely clean is a strong positive indicator, suggesting the plugin has not historically been a source of security issues. This, combined with the current static analysis findings, paints a picture of a plugin that is generally secure but has a specific area of improvement regarding database query handling.

In conclusion, frinextqr v1.1.2 appears to be a relatively secure plugin with a minimal attack surface and good output sanitization. The primary weakness identified is the use of non-prepared SQL statements, which should be addressed to mitigate potential SQL injection risks. The lack of past vulnerabilities is a significant strength, but the current finding warrants attention.

Key Concerns

  • SQL queries without prepared statements
Vulnerabilities
None known

Frinext Scan & Pay Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Frinext Scan & Pay Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
7
54 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

89% escaped61 total outputs
Attack Surface

Frinext Scan & Pay Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionwp_enqueue_scriptsfrinextqr.php:40
actionadmin_enqueue_scriptsfrinextqr.php:63
actionplugins_loadedfrinextqr.php:95
filterwoocommerce_payment_gatewaysfrinextqr.php:242
actionwoocommerce_blocks_loadedfrinextqr.php:254
actionenqueue_block_assetsfrinextqr.php:261
actionwoocommerce_blocks_payment_method_type_registrationfrinextqr.php:274
actiontemplate_redirectfrinextqr.php:286
actionwoocommerce_admin_order_data_after_order_detailsfrinextqr.php:487
Maintenance & Trust

Frinext Scan & Pay Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 15, 2026
PHP min version7.4
Downloads119

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Frinext Scan & Pay Developer Profile

frinextqr

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Frinext Scan & Pay

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/frinextqr/assets/payment.css/wp-content/plugins/frinextqr/assets/payment.js/wp-content/plugins/frinextqr/assets/admin.css
Script Paths
/wp-content/plugins/frinextqr/assets/payment.js
Version Parameters
frinext-scan-pay?ver=1.1.2frinext-scan-pay-admin?ver=1.1.2

HTML / DOM Fingerprints

CSS Classes
frinext-pro-noticefrinext-pro-titlefrinext-pro-content
Data Attributes
pattern="[a-zA-Z0-9.\-_]{2,256}@[a-zA-Z]{2,64}"required="required"
FAQ

Frequently Asked Questions about Frinext Scan & Pay