
Payment Gateway for QPayPro on Formidable Security & Risk Analysis
wordpress.org/plugins/frm-qpayproWordpress plugin that connects formidable forms with QPayPro payment gateway.
Is Payment Gateway for QPayPro on Formidable Safe to Use in 2026?
Generally Safe
Score 85/100Payment Gateway for QPayPro on Formidable has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The frm-qpaypro plugin v0.0.4 presents a mixed security posture. On the positive side, the code demonstrates good practices by utilizing prepared statements for all SQL queries, avoiding dangerous functions, and properly escaping a high percentage (86%) of output. There are also no recorded vulnerabilities or CVEs for this plugin, suggesting a history of secure development or a lack of widespread targeting. However, a significant concern arises from the attack surface analysis: there is one AJAX handler that lacks any authentication checks. This unprotected entry point is a critical weakness that could be exploited by unauthenticated users, potentially leading to unintended actions or data manipulation within the WordPress environment. The absence of any taint analysis results could indicate a very small code base or that the analysis tooling did not find any relevant flows to report, but it also means there's no explicit confirmation of how user-supplied data is handled in all potential execution paths. In conclusion, while the plugin has strengths in its SQL handling and output escaping, the single unprotected AJAX endpoint introduces a notable risk that overshadows these positive aspects.
Key Concerns
- Unprotected AJAX handler
- No capability checks on entry points
- Taint analysis data not provided/null
Payment Gateway for QPayPro on Formidable Security Vulnerabilities
Payment Gateway for QPayPro on Formidable Release Timeline
Payment Gateway for QPayPro on Formidable Code Analysis
Output Escaping
Payment Gateway for QPayPro on Formidable Attack Surface
AJAX Handlers 1
WordPress Hooks 7
Maintenance & Trust
Payment Gateway for QPayPro on Formidable Maintenance & Trust
Maintenance Signals
Community Trust
Payment Gateway for QPayPro on Formidable Alternatives
WooCommerce PayPal Payments
woocommerce-paypal-payments
PayPal's latest payment processing solution. Accept PayPal, Pay Later, credit/debit cards, alternative digital wallets and bank accounts.
PrettyLinks – Affiliate Links, Link Branding, Link Tracking, Marketing and Stripe Payments Plugin
pretty-link
🌠 The best WordPress link management, branding, tracking, sharing and payments plugin. Easily make pretty & trackable shortlinks. 🔗
Mollie Payments for WooCommerce
mollie-payments-for-woocommerce
Accept all major payment methods in WooCommerce today. Credit cards, iDEAL and more! Fast, safe and intuitive.
SureCart – Ecommerce Made Easy For Selling Physical Products, Digital Downloads, Subscriptions, Donations, & Payments
surecart
Make ecommerce easy with a simple-to-use, all-in-one platform that anyone can set up in just a few minutes!
Easy Digital Downloads – eCommerce Payments and Subscriptions made easy
easy-digital-downloads
The #1 eCommerce plugin to sell digital products & subscriptions. Accept payments with Stripe & PayPal. Sell ebooks, software & more.
Payment Gateway for QPayPro on Formidable Developer Profile
6 plugins · 100 total installs
How We Detect Payment Gateway for QPayPro on Formidable
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/frm-qpaypro/js/back_end.jsHTML / DOM Fingerprints
frmQppGlobal