MONEI Payments for WooCommerce Security & Risk Analysis

wordpress.org/plugins/monei

Accept Card, Apple Pay, Google Pay, Bizum, PayPal and many more payment methods in your WooCommerce store using MONEI payment gateway.

400 active installs v7.0.2 PHP 8.0+ WP 5.0+ Updated Nov 20, 2025
credit-cardecommercepayment-gatewaypaymentswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MONEI Payments for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

MONEI Payments for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The static analysis of the "monei" plugin v7.0.2 reveals a generally strong security posture. The plugin exhibits no known vulnerabilities (CVEs) and has a clean history. The code analysis shows a minimal attack surface with zero identified entry points that are unprotected. Furthermore, the plugin demonstrates good practices regarding output escaping, with 96% of outputs properly escaped, and includes nonce checks, indicating an awareness of common web security threats. The use of Guzzle, a bundled library, is noted. However, a significant concern arises from the single SQL query, which is not utilizing prepared statements, presenting a potential risk of SQL injection. The absence of capability checks on any potential entry points, though the attack surface is currently zero, could be a future risk if the plugin evolves and introduces new functionalities without proper authorization checks.

Key Concerns

  • SQL query not using prepared statements
  • No capability checks on identified entry points
Vulnerabilities
None known

MONEI Payments for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

MONEI Payments for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
3
71 escaped
Nonce Checks
3
Capability Checks
0
File Operations
2
External Requests
0
Bundled Libraries
1

Bundled Libraries

Guzzle

SQL Query Safety

0% prepared1 total queries

Output Escaping

96% escaped74 total outputs
Attack Surface

MONEI Payments for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 46
actionplugins_loadedclass-woocommerce-gateway-monei.php:74
actionwoocommerce_blocks_loadedclass-woocommerce-gateway-monei.php:79
actionwoocommerce_blocks_payment_method_type_registrationclass-woocommerce-gateway-monei.php:88
actionadmin_noticesclass-woocommerce-gateway-monei.php:107
actionadmin_noticesclass-woocommerce-gateway-monei.php:112
filterwoocommerce_get_settings_pagesclass-woocommerce-gateway-monei.php:147
actioninitclass-woocommerce-gateway-monei.php:167
actionplugins_loadedclass-woocommerce-gateway-monei.php:168
filteroption_woocommerce_monei_bizum_settingsclass-woocommerce-gateway-monei.php:263
filteroption_woocommerce_monei_paypal_settingsclass-woocommerce-gateway-monei.php:264
filteroption_woocommerce_monei_multibanco_settingsclass-woocommerce-gateway-monei.php:265
filteroption_woocommerce_monei_mbway_settingsclass-woocommerce-gateway-monei.php:266
filterwoocommerce_payment_gatewaysclass-woocommerce-gateway-monei.php:315
filterload_textdomain_mofileclass-woocommerce-gateway-monei.php:351
actiontemplate_redirectincludes\addons\class-wc-monei-addons-redirect-hooks.php:29
actiontemplate_redirectincludes\addons\class-wc-monei-addons-redirect-hooks.php:30
actionwoocommerce_api_monei_ipnincludes\class-wc-monei-ipn.php:31
filterwoocommerce_order_get_payment_method_titleincludes\class-wc-monei-payment-method-display.php:25
actionwoocommerce_admin_order_data_after_billing_addressincludes\class-wc-monei-payment-method-display.php:28
actionwoocommerce_order_status_on-hold_to_processingincludes\class-wc-monei-pre-auth.php:26
actionwoocommerce_order_status_on-hold_to_completedincludes\class-wc-monei-pre-auth.php:27
actionwoocommerce_order_status_on-hold_to_cancelledincludes\class-wc-monei-pre-auth.php:28
actionwoocommerce_order_status_on-hold_to_refundedincludes\class-wc-monei-pre-auth.php:29
actionwoocommerce_cancelled_orderincludes\class-wc-monei-redirect-hooks.php:31
actionwpincludes\class-wc-monei-redirect-hooks.php:32
actiontemplate_redirectincludes\class-wc-monei-redirect-hooks.php:33
filterwoocommerce_payment_gateway_get_new_payment_method_option_htmlincludes\class-wc-monei-redirect-hooks.php:59
actionwc_gateway_monei_create_payment_successsrc\Features\Subscriptions\WooCommerceSubscriptionsHandler.php:205
filterwoocommerce_my_subscriptions_payment_methodsrc\Features\Subscriptions\WooCommerceSubscriptionsHandler.php:209
actionywsbs_renew_subscriptionsrc\Features\Subscriptions\YithSubscriptionPluginHandler.php:29
actionwc_gateway_monei_create_payment_successsrc\Features\Subscriptions\YithSubscriptionPluginHandler.php:271
filterwoocommerce_my_subscriptions_payment_methodsrc\Features\Subscriptions\YithSubscriptionPluginHandler.php:275
filterwoocommerce_saved_payment_methods_listsrc\Gateways\Blocks\MoneiCCBlocksSupport.php:23
actionwp_enqueue_scriptssrc\Gateways\PaymentMethods\WCGatewayMoneiAppleGoogle.php:108
filterwoocommerce_available_payment_gatewayssrc\Gateways\PaymentMethods\WCGatewayMoneiAppleGoogle.php:109
actionwp_enqueue_scriptssrc\Gateways\PaymentMethods\WCGatewayMoneiBizum.php:98
actionwp_enqueue_scriptssrc\Gateways\PaymentMethods\WCGatewayMoneiCC.php:159
filterwoocommerce_update_order_review_fragmentssrc\Gateways\PaymentMethods\WCGatewayMoneiCC.php:162
actionwp_enqueue_scriptssrc\Gateways\PaymentMethods\WCGatewayMoneiPaypal.php:101
actioninitsrc\Services\ApiKeyService.php:22
filteroption_woocommerce_monei_settingssrc\Services\ApiKeyService.php:75
actionparse_requestsrc\Services\MoneiApplePayVerificationService.php:25
actionwoocommerce_update_options_payment_gateways_monei_apple_googlesrc\Services\MoneiApplePayVerificationService.php:26
actionadmin_enqueue_scriptssrc\Settings\MoneiSettings.php:22
actionbefore_woocommerce_initwoocommerce-gateway-monei.php:39
actionupgrader_process_completewoocommerce-gateway-monei.php:86
Maintenance & Trust

MONEI Payments for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 20, 2025
PHP min version8.0
Downloads14K

Community Trust

Rating100/100
Number of ratings45
Active installs400
Developer Profile

MONEI Payments for WooCommerce Developer Profile

monei

1 plugin · 400 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MONEI Payments for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/monei/public/css/monei-blocks-checkout.css/wp-content/plugins/monei/public/js/monei-block-checkout-apple-google.min.js
Script Paths
https://js.monei.com/v2/monei.js
Version Parameters
monei/public/css/monei-blocks-checkout.css?ver=monei/public/js/monei-block-checkout-apple-google.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
monei-blocks-checkout
Data Attributes
data-gateway_id="monei_apple_google"data-gateway_id="monei_bizum"
JS Globals
window.WC_Monei
FAQ

Frequently Asked Questions about MONEI Payments for WooCommerce