
Monetbil – Mobile Money Gateway for Easy Digital Downloads Security & Risk Analysis
wordpress.org/plugins/monetbil-edd-gatewayA Payment Gateway for Mobile Money Payments - Easy Digital Downloads.
Is Monetbil – Mobile Money Gateway for Easy Digital Downloads Safe to Use in 2026?
Generally Safe
Score 85/100Monetbil – Mobile Money Gateway for Easy Digital Downloads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security posture of monetbil-edd-gateway v1.15 appears to be reasonably good from a static analysis perspective, with no identified dangerous functions, raw SQL queries, file operations, or critical taint flows. The absence of known vulnerabilities in its history also suggests a history of secure development or diligent patching. However, there are significant concerns regarding output escaping, as only 29% of outputs are properly escaped. This leaves potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is directly reflected in the output without proper sanitization.
While the attack surface is reported as zero entry points, the external HTTP requests introduce a dependency on external services, which could be a vector for supply chain attacks or misconfigurations. The complete lack of nonce checks and capability checks across all identified entry points (if any exist beyond the reported zero) is a major weakness. This indicates that even if there were entry points, they would likely be vulnerable to CSRF attacks or unauthorized access, as they rely solely on the application's internal logic rather than WordPress's built-in security mechanisms.
In conclusion, while monetbil-edd-gateway v1.15 shows strengths in avoiding common SQL and code execution vulnerabilities, the high percentage of unescaped output and the complete absence of nonce and capability checks present substantial risks. These weaknesses, if not addressed, could lead to XSS, CSRF, and unauthorized access vulnerabilities. The plugin's history of no vulnerabilities is a positive sign, but it does not negate the immediate risks identified in the static analysis.
Key Concerns
- Unescaped output detected
- Missing capability checks
- Missing nonce checks
Monetbil – Mobile Money Gateway for Easy Digital Downloads Security Vulnerabilities
Monetbil – Mobile Money Gateway for Easy Digital Downloads Release Timeline
Monetbil – Mobile Money Gateway for Easy Digital Downloads Code Analysis
Output Escaping
Monetbil – Mobile Money Gateway for Easy Digital Downloads Attack Surface
WordPress Hooks 13
Maintenance & Trust
Monetbil – Mobile Money Gateway for Easy Digital Downloads Maintenance & Trust
Maintenance Signals
Community Trust
Monetbil – Mobile Money Gateway for Easy Digital Downloads Alternatives
Remita Easy Digital Downloads Payment Plugin
remita-payment-gateway-for-easy-digital-downloads
Remita Easy Digital Downloads Payment Plugin allows you to accept payment on your Easy Digital Downloads store via Visa Cards, Mastercards, Verve Card …
Payment Gateway using Mollie for Easy Digital Downloads
edd-mollie-gateway
This is a gateway extension for Easy Digital Downloads plugin to accept Mollie payments in your store (iDEAL, SOFORT, Bancontact, Credit Card etc.)
Shmart Payment Gateway for Easy Digital Downloads
payment-gateway-easy-digital-downloads-shmart
This plugin is an extension for Easy Digital Download plugin. Use this plugin to setup shmart payment gateway on your store.
Payment Gateway for Paynow on Easy Digital Downloads
payment-gateway-for-paynow-on-easy-digital-downloads
This is a gateway extension for Easy Digital Downloads plugin to accept Paynow payments in your store
Bayarcash For Easy Digital Downloads
bayarcash-for-easy-digital-downloads
Integrate Bayarcash payment solutions with your Easy Digital Downloads store.
Monetbil – Mobile Money Gateway for Easy Digital Downloads Developer Profile
2 plugins · 110 total installs
How We Detect Monetbil – Mobile Money Gateway for Easy Digital Downloads
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/monetbil-edd-gateway/assets/css/bootstrap.min.css/wp-content/plugins/monetbil-edd-gateway/assets/css/style.css/wp-content/plugins/monetbil-edd-gateway/assets/js/monetbil-mobile-payments.js/wp-content/plugins/monetbil-edd-gateway/assets/js/monetbil.min.js/wp-content/plugins/monetbil-edd-gateway/assets/js/monetbil-mobile-payments.js/wp-content/plugins/monetbil-edd-gateway/assets/js/monetbil.min.jsmonetbil-edd-gateway/assets/css/bootstrap.min.css?ver=monetbil-edd-gateway/assets/css/style.css?ver=monetbil-edd-gateway/assets/js/monetbil-mobile-payments.js?ver=monetbil-edd-gateway/assets/js/monetbil.min.js?ver=HTML / DOM Fingerprints
/monetbil/edd/notify/monetbil/edd/return