
IDPay Payment Gateway For LearnPress Security & Risk Analysis
wordpress.org/plugins/idpay-payment-learnpressAfter installing and enabling this plugin, your customers can pay through IDPay gateway.
Is IDPay Payment Gateway For LearnPress Safe to Use in 2026?
Generally Safe
Score 85/100IDPay Payment Gateway For LearnPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "idpay-payment-learnpress" plugin, version 1.1.0, exhibits a generally positive security posture, demonstrating good practices in several key areas. The complete absence of dangerous functions, the exclusive use of prepared statements for all SQL queries, and the high percentage of properly escaped output suggest a developer who is mindful of common vulnerabilities. Furthermore, the lack of known CVEs in its vulnerability history is a strong indicator of past stability and diligent security maintenance.
However, there are areas of concern that warrant attention. The presence of two "flows with unsanitized paths" in the taint analysis, even without critical or high severity, indicates potential vulnerabilities where user input might be processed in an unsafe manner, potentially leading to path traversal or other file system related issues if exploited. Additionally, the complete absence of nonce checks and capability checks, especially given the plugin's transactional nature (implied by "idpay-payment"), is a significant oversight. This leaves potential entry points vulnerable to CSRF attacks and unauthorized actions by unauthenticated or lower-privileged users. The single external HTTP request also represents a potential attack vector, though its context and security are not detailed in the provided data.
In conclusion, while the plugin has a solid foundation regarding SQL and output escaping, the identified unsanitized paths and the lack of critical security checks like nonces and capability checks present tangible risks. The excellent historical security record is a positive, but it does not negate the need to address the identified static analysis concerns to maintain a robust security profile.
Key Concerns
- Flows with unsanitized paths found
- Missing nonce checks
- Missing capability checks
- Single external HTTP request
IDPay Payment Gateway For LearnPress Security Vulnerabilities
IDPay Payment Gateway For LearnPress Code Analysis
Output Escaping
Data Flow Analysis
IDPay Payment Gateway For LearnPress Attack Surface
WordPress Hooks 7
Maintenance & Trust
IDPay Payment Gateway For LearnPress Maintenance & Trust
Maintenance Signals
Community Trust
IDPay Payment Gateway For LearnPress Alternatives
IDPay Payment Gateway for Woocommerce
woo-idpay-gateway
IDPay payment method for Woocommerce.
IDPay For Restrict Content Pro (RCP)
idpay-for-restrict-content-pro
After installing and enabling this plugin, your customers can pay through IDPay gateway.
IDPay For Wp Gravity Forms
idpay-gateway-gravity-forms
After installing and enabling this plugin, your customers can pay through IDPay gateway.
Zibal Payment Gateway for Learnpress
zibal-payment-learnpress
با نصب این پلاگین می توانید از خدمات درگاه پرداخت واسط و مستقیم و یا اختصاصی زیبال برروی افزونه لرن پرس استفاده کنید!
Payment Gateway Based Fees and Discounts for WooCommerce
checkout-fees-for-woocommerce
Set fees and discounts for WooCommerce payment gateways.
IDPay Payment Gateway For LearnPress Developer Profile
7 plugins · 1K total installs
How We Detect IDPay Payment Gateway For LearnPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/idpay-payment-learnpress/assets/css/style.css/wp-content/plugins/idpay-payment-learnpress/assets/js/script.js/wp-content/plugins/idpay-payment-learnpress/assets/js/script.jsidpay-payment-learnpress/assets/css/style.css?ver=idpay-payment-learnpress/assets/js/script.js?ver=HTML / DOM Fingerprints
data-idpay-form