Getnet Argentina para WooCommerce Security & Risk Analysis

wordpress.org/plugins/integrar-getnet-con-woo

Con este plugin podés permitirle a tus clientes pagar con tarjetas de débito o crédito, con bajas comisiones.

600 active installs v0.1.5 PHP + WP 5.0+ Updated Aug 18, 2025
getnetpaymentswoocommerce
99
A · Safe
CVEs total1
Unpatched0
Last CVEJul 7, 2023
Safety Verdict

Is Getnet Argentina para WooCommerce Safe to Use in 2026?

Generally Safe

Score 99/100

Getnet Argentina para WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Jul 7, 2023Updated 7mo ago
Risk Assessment

The static analysis of integrar-getnet-con-woo v0.1.5 reveals a generally positive security posture regarding direct code vulnerabilities. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and the lack of critical or high severity taint flows are commendable. However, the analysis highlights significant areas of concern. Notably, the complete absence of nonce checks and capability checks across all identified entry points (though zero in number) presents a theoretical weakness. The presence of file operations and external HTTP requests without clear authentication or authorization mechanisms could be exploitable if an attacker can influence the parameters used in these operations. Furthermore, the fact that 50% of the output is not properly escaped indicates a potential for Cross-Site Scripting (XSS) vulnerabilities if any user-supplied data is reflected in the output without sanitization.

The vulnerability history is a major red flag. The plugin has a known high severity CVE for an "Authorization Bypass Through User-Controlled Key," last seen in July 2023. Although currently unpatched, the existence of a past high-severity vulnerability, especially one involving authorization bypass, suggests a pattern of exploitable security flaws. This history, combined with the lack of robust input validation and authorization checks in the code analysis (e.g., no nonce or capability checks), strongly indicates that the plugin may be susceptible to similar or related vulnerabilities. While the plugin shows good practices in some areas like SQL queries, the historical precedent and specific code analysis concerns paint a picture of a plugin that requires careful attention and immediate patching of known vulnerabilities.

Key Concerns

  • One high severity CVE known
  • 50% of output not properly escaped
  • 0 nonce checks
  • 0 capability checks
Vulnerabilities
1

Getnet Argentina para WooCommerce Security Vulnerabilities

CVEs by Year

1 CVE in 2023
2023
Patched Has unpatched

Severity Breakdown

High
1

1 total CVE

CVE-2023-3525high · 7.5Authorization Bypass Through User-Controlled Key

Getnet Argentina para Woocommerce 0.0.1 - 0.0.4 - Authorization Bypass via webhook

Jul 7, 2023 Patched in 0.0.5 (200d)
Code Analysis
Analyzed Mar 16, 2026

Getnet Argentina para WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
1
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
4
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

50% escaped2 total outputs
Attack Surface

Getnet Argentina para WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionbefore_woocommerce_initwanderlust-getnet.php:24
filterwoocommerce_payment_gatewayswanderlust-getnet.php:30
actionplugins_loadedwanderlust-getnet.php:31
actionwoocommerce_api_getnetwanderlust-getnet.php:70
Maintenance & Trust

Getnet Argentina para WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 18, 2025
PHP min version
Downloads9K

Community Trust

Rating100/100
Number of ratings7
Active installs600
Developer Profile

Getnet Argentina para WooCommerce Developer Profile

Wanderlust Codes

6 plugins · 2K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
200 days
View full developer profile
Detection Fingerprints

How We Detect Getnet Argentina para WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/integrar-getnet-con-woo/img/logos-tarjetas.png

HTML / DOM Fingerprints

REST Endpoints
/wp-json/getnet/v1/payment
FAQ

Frequently Asked Questions about Getnet Argentina para WooCommerce