
Método de pago QR de Ligo Security & Risk Analysis
wordpress.org/plugins/metodo-de-pago-qr-de-ligoMétodo de pago offline para WooCommerce que muestra un QR del Ligo y el nombre del titular.
Is Método de pago QR de Ligo Safe to Use in 2026?
Generally Safe
Score 100/100Método de pago QR de Ligo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'metodo-de-pago-qr-de-ligo' v1.5 exhibits a generally strong security posture based on the provided static analysis. The absence of any identified CVEs in its vulnerability history, coupled with a clean taint analysis showing no critical or high severity flows, suggests a well-maintained and secure codebase. The plugin also demonstrates good practices by not performing file operations or external HTTP requests, further limiting its attack surface. All SQL queries are using prepared statements, which is a crucial security measure against SQL injection. The primary area of concern lies in the output escaping, where 35% of outputs are not properly escaped. While the attack surface is reported as zero, this lack of comprehensive output escaping could still leave the plugin vulnerable to cross-site scripting (XSS) attacks if user-supplied data is directly reflected in the output without proper sanitization. Given the lack of historical vulnerabilities and a seemingly limited attack surface, the risk is currently low, but the unescaped output is a notable weakness that warrants attention to prevent potential XSS.
Key Concerns
- Unescaped output identified
Método de pago QR de Ligo Security Vulnerabilities
Método de pago QR de Ligo Code Analysis
Output Escaping
Método de pago QR de Ligo Attack Surface
WordPress Hooks 4
Maintenance & Trust
Método de pago QR de Ligo Maintenance & Trust
Maintenance Signals
Community Trust
Método de pago QR de Ligo Alternatives
No alternatives data available yet.
Método de pago QR de Ligo Developer Profile
11 plugins · 9K total installs
How We Detect Método de pago QR de Ligo
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/metodo-de-pago-qr-de-ligo/assets/js/admin.js/wp-content/plugins/metodo-de-pago-qr-de-ligo/assets/js/admin.jsmetodo-de-pago-qr-de-ligo/assets/js/admin.js?ver=HTML / DOM Fingerprints
qrligo-thankyoubutton class="button ligo-qr-upload"