[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fxlRLbNRQ6qyQWMd2-Vmu6w_koazVktRBp33qXxuln0w":3,"$fsqsjxCRZORXfRPvqiRlJmner6uzICX6mweDSRH05y3Y":348,"$fJzkp2ilpK5RmDSAr-EaVOa6GeBjU7MIuaJrmhv6-4qU":352},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":13,"num_ratings":13,"last_updated":14,"tested_up_to":15,"requires_at_least":16,"requires_php":17,"tags":18,"homepage":23,"download_link":24,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":36,"analysis":125,"fingerprints":331},"montypay","MontyPay","4.4.1","Technical Team | MontyPay","https:\u002F\u002Fprofiles.wordpress.org\u002Ftechnicalmontypay\u002F","\u003Cp>This plugin integrates MontyPay with WooCommerce, allowing merchants to securely process payments via MontyPay’s payment platform.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Bank card payments via hosted page\u003C\u002Fli>\n\u003Cli>iFrame and non-iFrame card payment options\u003C\u002Fli>\n\u003Cli>Support for recurring payments\u003C\u002Fli>\n\u003Cli>Server-to-server (S2S) processing\u003C\u002Fli>\n\u003Cli>Digital wallet payment integration\u003C\u002Fli>\n\u003Cli>Apple Pay compatibility\u003C\u002Fli>\n\u003Cli>Stripe-based payment flow support\u003C\u002Fli>\n\u003Cli>Payment icon management (enable\u002Fdisable)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>No sensitive card details are stored on your server. MontyPay handles all sensitive payment data securely.\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin relies on \u003Cstrong>MontyPay\u003C\u002Fstrong>, a third-party external service, to process payments.\u003C\u002Fp>\n\u003Ch3>What the Service Is and Its Purpose\u003C\u002Fh3>\n\u003Cp>MontyPay is a payment service provider that securely processes online transactions made through this plugin. It is required to create payment sessions, initiate transactions, redirect users to secure checkout pages, and confirm payment status updates.\u003C\u002Fp>\n\u003Ch3>What Data Is Sent and When\u003C\u002Fh3>\n\u003Cp>When a user initiates a payment, the plugin communicates with MontyPay’s external APIs. The following data may be transmitted:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Transaction amount and currency\u003C\u002Fli>\n\u003Cli>Order or reference ID\u003C\u002Fli>\n\u003Cli>Customer details (name, email address, billing information, depending on configuration)\u003C\u002Fli>\n\u003Cli>Technical data required to complete the transaction (e.g., transaction identifiers, callback URLs, session tokens)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This data is only sent when a payment is created, processed, or verified, and is essential for the payment functionality to work correctly. The plugin does not store or process card details. MontyPay’s secure infrastructure handles all sensitive payment information.\u003C\u002Fp>\n\u003Ch3>External Service Endpoints\u003C\u002Fh3>\n\u003Cp>To function properly, this plugin may connect to the following MontyPay domains and API endpoints:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>https:\u002F\u002Fapi.montypay.com\u002Fpost\u003C\u002Fli>\n\u003Cli>https:\u002F\u002Fcheckout.montypay.com\u002Fapi\u002Fv1\u002Fsession\u003C\u002Fli>\n\u003Cli>https:\u002F\u002Fmm-core.montypay.com\u002Fapi\u002Fv1\u002Ftransaction\u002Fcheckout\u003C\u002Fli>\n\u003Cli>https:\u002F\u002Fcheckout.montypay.com\u002F*\u003C\u002Fli>\n\u003Cli>https:\u002F\u002F\u003Cem>.montypay.com\u002F\u003C\u002Fem>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>These endpoints facilitate payment session creation, transaction processing, user redirection to hosted checkout pages, and transaction status updates.\u003C\u002Fp>\n\u003Ch3>Terms of Service and Privacy Policy\u003C\u002Fh3>\n\u003Cp>MontyPay’s data handling practices are governed by its legal documents:\u003C\u002Fp>\n\u003Cp>Terms and Conditions: https:\u002F\u002Fmontypay.com\u002Fterms-and-conditions\u003C\u002Fp>\n\u003Cp>Privacy Policy: https:\u002F\u002Fmontypay.com\u002Fprivacy-policy\u003C\u002Fp>\n\u003Cp>By using this plugin, you agree to the transmission of payment-related data to MontyPay for processing, in accordance with MontyPay’s terms and privacy policy.\u003C\u002Fp>\n","MontyPay for WooCommerce. Accept secure online payments using cards, digital wallets, Apple Pay, Stripe, and recurring payments.",10,384,0,"2026-03-27T11:13:00.000Z","7.0","6.0","8.0",[19,4,20,21,22],"credit-card","online-payments","payment-gateway","payments","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmontypay.zip",100,null,"2026-04-06T09:54:40.288Z","no_bundle",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"technicalmontypay",1,30,94,"2026-05-20T08:03:58.790Z",[37,54,72,90,106],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":25,"downloaded":45,"rating":13,"num_ratings":13,"last_updated":46,"tested_up_to":47,"requires_at_least":48,"requires_php":15,"tags":49,"homepage":23,"download_link":52,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":53},"paystation-woocommerce-payment-gateway","Paystation Payment Gateway for woocommerce","1.3.1","paystationNZ","https:\u002F\u002Fprofiles.wordpress.org\u002Fpaystationnz\u002F","\u003Cp>Accept credit card payments with \u003Ca href=\"http:\u002F\u002Fwww.paystation.co.nz\" rel=\"nofollow ugc\">Paystation\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>With our secure hosted payment pages you can take payments via multiple card types\u003C\u002Fp>\n\u003Cul>\n\u003Cli>VISA\u003C\u002Fli>\n\u003Cli>Mastercard\u003C\u002Fli>\n\u003Cli>American Express\u003C\u002Fli>\n\u003Cli>Diners Club\u003C\u002Fli>\n\u003Cli>Q Card\u003C\u002Fli>\n\u003Cli>POLi\u003C\u002Fli>\n\u003Cli>MasterPass\u003C\u002Fli>\n\u003Cli>UnionPay\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Requirements:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>An account with \u003Ca href=\"https:\u002F\u002Fpaystation.co.nz\u002Fpricing\u002F\" rel=\"nofollow ugc\">Paystation\u003C\u002Fa>.\u003C\u002Fli>\n\u003Cli>An HMAC key for your Paystation account, contact our support team \u003Ca href=\"mailto:support@paystation.co.nz\" rel=\"nofollow ugc\">via email\u003C\u002Fa> if you do not already have this.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Installation\u003C\u002Fh4>\n\u003Col>\n\u003Cli>From the WooCommerce menu on the admin menu, select the ‘Settings’ link.\u003C\u002Fli>\n\u003Cli>Select ‘Payments’ tab from the top menu bar.\u003C\u002Fli>\n\u003Cli>Scroll down to the Paystation payment method and click ‘Manage’ for using Paystation Payment Gateway’.\u003C\u002Fli>\n\u003Cli>Click ‘Enable Paystation Payment Module’ checkbox to turn on plugin.\u003C\u002Fli>\n\u003Cli>Enter Paystation Id as provided by Paystation.\u003C\u002Fli>\n\u003Cli>Enter Gateway Id as provided by Paystation.\u003C\u002Fli>\n\u003Cli>Enter HMAC key as provided by Paystation.\u003C\u002Fli>\n\u003Cli>Select the ‘Enable test mode’ box if required.\u003C\u002Fli>\n\u003Cli>Click ‘Save changes’ button.\u003C\u002Fli>\n\u003Cli>Email our support team \u003Ca href=\"mailto:support@paystation.co.nz\" rel=\"nofollow ugc\">via email\u003C\u002Fa> if you have any issues with the details: Your Paystation ID, Gateway ID, confirming that you are using the Paystation WooCommerce plugin, the website link.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Testing Payments\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Ensure your Paystation settings have ‘Enable test mode’ selected.\u003C\u002Fli>\n\u003Cli>Make sure that you have at least one product added to your store.\u003C\u002Fli>\n\u003Cli>Set up a product with any amount to check successful or unsuccessful transaction testing respectively.\u003C\u002Fli>\n\u003Cli>Add product to cart and proceed to the checkout screen.\u003C\u002Fli>\n\u003Cli>Select Paystation credit card payments as payment method and continue.\u003C\u002Fli>\n\u003Cli>Fill the test card details of hosted payment form with one of our VISA or Mastercard \u003Ca href=\"https:\u002F\u002Fpaystation.co.nz\u002Fdevelopers\u002Ftest-cards\u002F\" rel=\"nofollow ugc\">test cards\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>Upon successful transaction orders will be shown at your website backend store.\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Taking Live Credit Payments\u003C\u002Fh4>\n\u003Cp>Once the site is working as expected you will need to fill in the \u003Ca href=\"https:\u002F\u002Fpaystation.co.nz\u002Fgolive\" rel=\"nofollow ugc\">Go live\u003C\u002Fa> form so that Paystation can test and set your account into Production Mode.\u003C\u002Fp>\n\u003Cp>Your account will be confirmed by Paystation when it’s live, and after that you need to go back to the Woocommerce checkout settings, and uncheck the ‘Enable test mode’ box in the Paystation method settings.\u003C\u002Fp>\n\u003Cp>Congratulations – you’re now setup to take credit card Payments!\u003C\u002Fp>\n","Take credit card payments on your store via Paystation.",8599,"2026-02-09T02:12:00.000Z","6.9.0","4.1",[19,50,20,21,51],"ecommerce","woocommerce","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpaystation-woocommerce-payment-gateway.1.3.1.zip","2026-04-16T10:56:18.058Z",{"slug":55,"name":56,"version":57,"author":41,"author_profile":42,"description":58,"short_description":59,"active_installs":33,"downloaded":60,"rating":25,"num_ratings":61,"last_updated":62,"tested_up_to":63,"requires_at_least":64,"requires_php":65,"tags":66,"homepage":69,"download_link":70,"security_score":71,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":53},"gravity-forms-paystation-3-party-hosted","Paystation (3 Party Hosted) for Gravity forms","1.5.6","\u003Cp>Gravity Forms Paystation (3 party hosted) adds a 3 party hosted credit card payment gateway for \u003Ca href=\"https:\u002F\u002Fwww2.paystation.co.nz\" rel=\"nofollow ugc\">Paystation\u003C\u002Fa> to the \u003Ca href=\"http:\u002F\u002Fwww.gravityforms.com\u002F\" rel=\"nofollow ugc\">Gravity Forms\u003C\u002Fa> plugin.\u003C\u002Fp>\n\u003Cp>With this plugin you can use Gravity Forms to create various types of payment forms…\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Product forms\u003C\u002Fli>\n\u003Cli>Online Booking forms\u003C\u002Fli>\n\u003Cli>Donation forms\u003C\u002Fli>\n\u003Cli>Service payment forms\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>NOTE: this plugin requires \u003Ca href=\"http:\u002F\u002Fwww.gravityforms.com\u002F\" rel=\"nofollow ugc\">Gravity Forms\u003C\u002Fa>; so you need to have installed and activated Gravity Forms.\u003C\u002Fp>\n\u003Ch4>Requirements:\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>The \u003Ca href=\"http:\u002F\u002Fwww.gravityforms.com\u002F\" rel=\"nofollow ugc\">Gravity Forms\u003C\u002Fa> plugin, any licence (Personal, Business, Developer).\u003C\u002Fli>\n\u003Cli>An account with \u003Ca href=\"https:\u002F\u002Fwww2.paystation.co.nz\u002F\" rel=\"nofollow ugc\">Paystation\u003C\u002Fa>.\u003C\u002Fli>\n\u003C\u002Ful>\n","Integrates Gravity Forms with the Paystation 3 party hosted payment gateway allowing end-users to purchase goods and services via Gravity Forms.",6497,3,"2024-07-17T22:01:00.000Z","6.4.8","3.3","6.4.5",[67,50,68,20,21],"credit-card-payments","gravity-forms","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fgravity-forms-paystation-3-party-hosted\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fgravity-forms-paystation-3-party-hosted.1.5.7.zip",92,{"slug":73,"name":74,"version":75,"author":74,"author_profile":76,"description":77,"short_description":78,"active_installs":33,"downloaded":79,"rating":80,"num_ratings":81,"last_updated":82,"tested_up_to":63,"requires_at_least":83,"requires_php":15,"tags":84,"homepage":87,"download_link":88,"security_score":89,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"pay-advantage","Pay Advantage","3.3.1","https:\u002F\u002Fprofiles.wordpress.org\u002Fpayadvantage\u002F","\u003Cp>\u003Ca href=\"https:\u002F\u002Fwww.payadvantage.com.au\" rel=\"nofollow ugc\">Pay Advantage\u003C\u002Fa> is Australia’s #1 solution for accepting Visa, Mastercard, American Express, BPAY and Direct Debit.\u003C\u002Fp>\n\u003Cp>This plugin allows you to add widgets to your website so you can:\u003C\u002Fp>\n\u003Col>\n\u003Cli>Instantly accept all \u003Ca href=\"https:\u002F\u002Fwww.payadvantage.com.au\u002Faccept-credit-card-payments\u002F\" rel=\"nofollow ugc\">major credit cards\u003C\u002Fa> including Visa, Mastercard and American Express from your site\u003C\u002Fli>\n\u003Cli>Automatically on-charge credit card processing fee’s\u003C\u002Fli>\n\u003Cli>Reduce card acceptance fraud with the latest \u003Ca href=\"https:\u002F\u002Fhelp.payadvantage.com.au\u002Fhc\u002Fen-us\u002Farticles\u002F4411360257167\" rel=\"nofollow ugc\">3D Secure v2\u002FPayer Authentication\u003C\u002Fa> system which verifies the cardholder authenticity\u003C\u002Fli>\n\u003Cli>Generate \u003Ca href=\"https:\u002F\u002Fwww.payadvantage.com.au\u002Fbpay-biller\u002F\" rel=\"nofollow ugc\">BPAY CRNs\u003C\u002Fa> allowing you to accept BPAY payments\u003C\u002Fli>\n\u003Cli>Integrates with \u003Ca href=\"https:\u002F\u002Fwoocommerce.com\" rel=\"nofollow ugc\">WooCommerce\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Awards\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>CIO Top 10 APAC Payment Solution Companies (2019)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Features\u003C\u002Fh4>\n\u003Col>\n\u003Cli>Easy online application with fast account approvals and next business day settlement of most payment types\u003C\u002Fli>\n\u003Cli>Australia based telephone and email support\u003C\u002Fli>\n\u003Cli>Instant online credit card payments through Visa, Mastercard and American Express\u003C\u002Fli>\n\u003Cli>Generate BPAY compatible CRN’s allowing you to accept payments through BPAY\u003C\u002Fli>\n\u003Cli>WooCommerce payments\u003C\u002Fli>\n\u003C\u002Fol>\n","Instantly accept Visa, Mastercard and American Express from your site with fast settlement to any Australian bank account.",3947,60,2,"2023-11-22T23:21:00.000Z","5.2",[85,86,20,21],"credit-cards","e-commerce","https:\u002F\u002Fwww.payadvantage.com.au\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fpay-advantage.3.3.1.zip",85,{"slug":91,"name":92,"version":93,"author":91,"author_profile":94,"description":95,"short_description":96,"active_installs":97,"downloaded":98,"rating":13,"num_ratings":13,"last_updated":99,"tested_up_to":100,"requires_at_least":16,"requires_php":101,"tags":102,"homepage":23,"download_link":105,"security_score":25,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":53},"zaakpay","ZaakPay","1.0.1","https:\u002F\u002Fprofiles.wordpress.org\u002Fzaakpay\u002F","\u003Cp>Easily integrate Zaakpay, a secure payment gateway, into your WooCommerce store. This plugin allows your customers to pay using credit cards, debit cards, net banking, and other supported methods via Zaakpay’s trusted payment processing system.\u003C\u002Fp>\n\u003Cp>A few notes about the sections above:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Supports major payment methods including credit\u002Fdebit cards, etc.\u003C\u002Fli>\n\u003Cli>Seamless integration with WooCommerce checkout.\u003C\u002Fli>\n\u003Cli>Secure and reliable transaction processing via Zaakpay.\u003C\u002Fli>\n\u003Cli>Real-time payment status updates and error handling.\u003C\u002Fli>\n\u003C\u002Ful>\n","Seamlessly integrate Zaakpay payment gateway with WooCommerce for secure and reliable online payments.",20,310,"2025-12-24T12:25:00.000Z","6.8.5","7.4",[67,20,21,103,104],"payment-processor","secure-payments","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fzaakpay.1.0.1.zip",{"slug":107,"name":108,"version":109,"author":110,"author_profile":111,"description":112,"short_description":113,"active_installs":13,"downloaded":114,"rating":13,"num_ratings":13,"last_updated":115,"tested_up_to":116,"requires_at_least":117,"requires_php":101,"tags":118,"homepage":123,"download_link":124,"security_score":71,"vuln_count":13,"unpatched_count":13,"last_vuln_date":26,"fetched_at":27},"am-nmi-gateway-for-woocommerce","AM NMI Gateway for WooCommerce","1.0.0","rushikshah","https:\u002F\u002Fprofiles.wordpress.org\u002Frushikshah\u002F","\u003Cp>AM NMI Gateway for WooCommerce is the ultimate solution for WooCommerce stores looking to provide secure, reliable, and fast credit card payment processing. The plugin integrates seamlessly with the NMI (Network Merchants, Inc.) payment gateway, offering merchants a powerful solution for handling online transactions. Whether you run a small store or a large e-commerce site, this plugin ensures your customers enjoy a smooth and secure checkout experience.\u003C\u002Fp>\n\u003Ch3>Use of 3rd Party Service\u003C\u002Fh3>\n\u003Cp>This plugin relies on the \u003Cstrong>NMI (Network Merchants, Inc.)\u003C\u002Fstrong> payment gateway to process credit card transactions. When you use this plugin, your store’s payment data is securely transmitted to NMI via a POST request to the NMI API endpoint, and a response indicating the success or failure of the transaction is returned.\u003C\u002Fp>\n\u003Ch3>Details:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>The plugin sends payment data (such as credit card information and billing details) to the NMI API at \u003Ccode>https:\u002F\u002Fsecure.nmi.com\u002Fapi\u002Ftransact.php\u003C\u002Fcode>.\u003C\u002Fli>\n\u003Cli>The API processes the data and returns a response indicating whether the transaction was successful or not.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Please ensure that your use of this plugin complies with any applicable legal requirements in your region for transmitting data to a third party.\u003C\u002Fp>\n\u003Cp>For more information, review NMI’s policies:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.nmi.com\u002F\" rel=\"nofollow ugc\">NMI Website\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.nmi.com\u002Flegal\u002Fprivacy-policy\u002F\" rel=\"nofollow ugc\">NMI Privacy Policy\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.nmi.com\u002Flegal\u002Fwebsite-terms-and-conditions\u002F\" rel=\"nofollow ugc\">NMI Terms and Conditions\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Requirements\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Active  \u003Ca href=\"https:\u002F\u002Fwww.nmi.com\u002F\" rel=\"nofollow ugc\">NMI\u003C\u002Fa>  account.\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwoocommerce.com\u002F\" rel=\"nofollow ugc\">\u003Cstrong>WooCommerce\u003C\u002Fstrong>\u003C\u002Fa>  version 3.3 or later.\u003C\u002Fli>\n\u003Cli>A valid SSL certificate is required to ensure your customer credit card details are safe and make your site PCI DSS compliant. This plugin does not store the customer credit card numbers or sensitive information on your website.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Why NMI?\u003C\u002Fh3>\n\u003Cp>NMI is a leading payment gateway provider known for its robust and secure payment solutions. With this plugin, you can optimize your payment processing with PCI-compliant security features, fraud prevention tools, and a reliable infrastructure that enhances customer trust.\u003C\u002Fp>\n\u003Ch3>Key Features:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Secure Payment Processing: Fully PCI-compliant integration ensures that all transactions are secure and meet the highest security standards.\u003C\u002Fli>\n\u003Cli>NMI Platform Integration: Leverage the powerful NMI payment gateway for seamless credit card processing and real-time transaction management.\u003C\u002Fli>\n\u003Cli>Efficient Transaction Handling: Provides fast and reliable processing for Visa, MasterCard, American Express, and other credit card types.\u003C\u002Fli>\n\u003Cli>Multiple Currency Support: Process payments in different currencies to cater to global customers.\u003C\u002Fli>\n\u003Cli>Test and Live Mode: Easily switch between test and live environments to ensure your gateway is properly configured.\u003C\u002Fli>\n\u003Cli>PCI-Compliant Credit Card Payments: Emphasize PCI compliance for enhanced visibility in security-related searches.\u003C\u002Fli>\n\u003C\u002Ful>\n","The AM NMI Gateway for WooCommerce enables secure and efficient credit card payments via the NMI gateway.",631,"2024-10-21T13:01:00.000Z","6.6.5","5.6",[119,120,121,122],"nmi-credit-card-gateway","nmi-payments","secure-online-payments","woocommerce-payment-gateway","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fam-nmi-gateway-woocommerce","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fam-nmi-gateway-for-woocommerce.1.0.0.zip",{"attackSurface":126,"codeSignals":297,"taintFlows":306,"riskAssessment":325,"analyzedAt":330},{"hooks":127,"ajaxHandlers":260,"restRoutes":294,"shortcodes":295,"cronEvents":296,"entryPointCount":235,"unprotectedCount":61},[128,134,139,143,147,151,154,157,161,165,167,170,173,176,180,184,187,191,194,197,200,205,207,209,212,215,219,222,227,230,232,238,241,244,246,248,251,254,257],{"type":129,"name":130,"callback":131,"file":132,"line":133},"action","woocommerce_api_montypay_callback","check_ipn_response","abstract\u002Fclass-montypay-abstract-gateway.php",24,{"type":129,"name":135,"callback":136,"file":137,"line":138},"wp_enqueue_scripts","enqueue_checkout_styles","gateways\u002Fgateway-hosted\u002Fclass-montypay-gateway-hosted.php",33,{"type":129,"name":140,"callback":141,"file":137,"line":142},"admin_enqueue_scripts","enqueue_admin_assets",34,{"type":129,"name":144,"callback":145,"file":137,"line":146},"admin_notices","closure",452,{"type":129,"name":148,"callback":145,"file":149,"line":150},"woocommerce_thankyou","gateways\u002Fgateway-hosted\u002Fclass-montypay-hosted-processor.php",243,{"type":129,"name":135,"callback":152,"priority":97,"file":149,"line":153},"montypay_enqueue_iframe_js",272,{"type":129,"name":155,"callback":145,"file":149,"line":156},"woocommerce_montypay_hosted_payment_fields",318,{"type":158,"name":159,"callback":145,"priority":11,"file":149,"line":160},"filter","woocommerce_gateway_icon",341,{"type":129,"name":162,"callback":145,"file":163,"line":164},"add_meta_boxes","gateways\u002Fgateway-hosted\u002Frecurring\u002Fclass-montypay-recurring-product-meta.php",6,{"type":129,"name":140,"callback":145,"file":163,"line":166},62,{"type":129,"name":168,"callback":145,"priority":11,"file":163,"line":169},"save_post_product",122,{"type":129,"name":135,"callback":136,"file":171,"line":172},"gateways\u002Fgateway-hosted-apple-pay\u002Fclass-montypay-gateway-hosted-apple-pay.php",27,{"type":129,"name":148,"callback":145,"file":174,"line":175},"gateways\u002Fgateway-hosted-apple-pay\u002Fclass-montypay-hosted-apple-pay-processor.php",177,{"type":129,"name":135,"callback":177,"file":178,"line":179},"montypay_enqueue_hpf_assets","gateways\u002Fgateway-hpf\u002Fclass-montypay-gateway-hpf.php",23,{"type":129,"name":181,"callback":182,"file":178,"line":183},"template_redirect","montypay_hpf_handle_3ds_return",367,{"type":129,"name":185,"callback":145,"file":178,"line":186},"init",418,{"type":129,"name":188,"callback":189,"file":178,"line":190},"woocommerce_checkout_order_created","montypay_hpf_save_cart_ref_to_order",429,{"type":129,"name":192,"callback":189,"file":178,"line":193},"woocommerce_store_api_checkout_order_processed",430,{"type":129,"name":135,"callback":136,"file":195,"line":196},"gateways\u002Fgateway-s2s\u002Fclass-montypay-gateway-s2s.php",28,{"type":129,"name":135,"callback":198,"file":195,"line":199},"enqueue_s2s_assets",29,{"type":129,"name":201,"callback":202,"priority":11,"file":203,"line":204},"woocommerce_rest_checkout_process_payment_with_context","montypay_s2s_payment_rest_process_payment","gateways\u002Fgateway-s2s\u002Fclass-montypay-s2s-processor.php",242,{"type":129,"name":181,"callback":145,"file":203,"line":206},417,{"type":129,"name":148,"callback":145,"file":203,"line":208},500,{"type":129,"name":135,"callback":136,"file":210,"line":211},"gateways\u002Fgateway-stripe\u002Fclass-montypay-gateway-stripe.php",22,{"type":129,"name":148,"callback":145,"file":213,"line":214},"gateways\u002Fgateway-stripe\u002Fclass-montypay-stripe-processor.php",186,{"type":158,"name":216,"callback":145,"file":217,"line":218},"woocommerce_payment_gateways","gateways\u002Fgateway-wallets\u002Fclass-montypay-gateway-wallet-child.php",220,{"type":129,"name":135,"callback":136,"file":220,"line":221},"gateways\u002Fgateway-wallets\u002Fclass-montypay-gateway-wallets.php",18,{"type":129,"name":223,"callback":224,"file":225,"line":226},"woocommerce_api_montypay_success_callback","check_ipn_response_success","gateways\u002Fgateway-wallets\u002Fclass-montypay-wallets-processor.php",26,{"type":129,"name":228,"callback":229,"file":225,"line":172},"woocommerce_api_montypay_fail_callback","check_ipn_response_fail",{"type":129,"name":148,"callback":145,"file":225,"line":231},280,{"type":129,"name":233,"callback":234,"priority":235,"file":236,"line":237},"plugins_loaded","montypay_boot",11,"montypay.php",19,{"type":129,"name":144,"callback":239,"file":236,"line":240},"montypay_notice_php",35,{"type":129,"name":144,"callback":242,"file":236,"line":243},"montypay_notice_wc",40,{"type":129,"name":144,"callback":145,"file":236,"line":245},46,{"type":129,"name":144,"callback":145,"file":236,"line":247},68,{"type":158,"name":216,"callback":249,"file":236,"line":250},"montypay_register_gateways",74,{"type":129,"name":130,"callback":252,"file":236,"line":253},"montypay_handle_ipn_callback",76,{"type":129,"name":135,"callback":255,"file":236,"line":256},"montypay_enqueue_assets",77,{"type":129,"name":258,"callback":259,"file":236,"line":25},"woocommerce_blocks_payment_method_type_registration","montypay_register_blocks",[261,265,268,272,274,277,279,283,285,288,290],{"action":262,"nopriv":263,"callback":262,"hasNonce":263,"hasCapCheck":263,"file":149,"line":264},"montypay_fetch_iframe_url",false,321,{"action":262,"nopriv":266,"callback":262,"hasNonce":263,"hasCapCheck":263,"file":149,"line":267},true,325,{"action":269,"nopriv":263,"callback":270,"hasNonce":266,"hasCapCheck":263,"file":178,"line":271},"montypay_generate_cart_token","montypay_hpf_generate_cart_token",425,{"action":269,"nopriv":266,"callback":270,"hasNonce":266,"hasCapCheck":263,"file":178,"line":273},426,{"action":275,"nopriv":263,"callback":275,"hasNonce":266,"hasCapCheck":263,"file":178,"line":276},"montypay_hpf_create_order_token",486,{"action":275,"nopriv":266,"callback":275,"hasNonce":266,"hasCapCheck":263,"file":178,"line":278},487,{"action":280,"nopriv":263,"callback":281,"hasNonce":266,"hasCapCheck":263,"file":178,"line":282},"montypay_hpf_purchase","montypay_hpf_process_purchase",531,{"action":280,"nopriv":266,"callback":281,"hasNonce":266,"hasCapCheck":263,"file":178,"line":284},532,{"action":286,"nopriv":263,"callback":286,"hasNonce":266,"hasCapCheck":263,"file":178,"line":287},"montypay_hpf_blocks_purchase",540,{"action":286,"nopriv":266,"callback":286,"hasNonce":266,"hasCapCheck":263,"file":178,"line":289},541,{"action":291,"nopriv":263,"callback":292,"hasNonce":263,"hasCapCheck":263,"file":236,"line":293},"woocommerce_toggle_gateway_enabled","montypay_sync_wallet_toggle",75,[],[],[],{"dangerousFunctions":298,"sqlUsage":299,"outputEscaping":301,"fileOperations":81,"externalRequests":304,"nonceChecks":11,"capabilityChecks":13,"bundledLibraries":305},[],{"prepared":13,"raw":13,"locations":300},[],{"escaped":302,"rawEcho":13,"locations":303},192,[],9,[],[307],{"entryPoint":308,"graph":309,"unsanitizedCount":13,"severity":324},"\u003Cclass-montypay-s2s-processor> (gateways\u002Fgateway-s2s\u002Fclass-montypay-s2s-processor.php:0)",{"nodes":310,"edges":322},[311,316],{"id":312,"type":313,"label":314,"file":203,"line":315},"n0","source","$_GET",438,{"id":317,"type":318,"label":319,"file":203,"line":320,"wp_function":321},"n1","sink","echo() [XSS]",467,"echo",[323],{"from":312,"to":317,"sanitized":266},"low",{"summary":326,"deductions":327},"The montypay v4.4.1 plugin demonstrates a generally strong security posture with excellent practices in SQL query sanitization and output escaping, both achieving 100%.  The absence of known CVEs and a clean vulnerability history further suggests a history of secure development.  However, a significant concern arises from its attack surface. With 11 AJAX handlers, 3 of which lack authentication checks, there's a considerable risk of unauthorized actions being performed by unauthenticated users.  While taint analysis shows no critical or high-severity issues and no unsanitized paths, the unprotected AJAX endpoints could still be exploited if they handle sensitive data or perform critical operations.",[328],{"reason":329,"points":11},"AJAX handlers without authentication checks","2026-04-16T11:36:29.816Z",{"wat":332,"direct":340},{"assetPaths":333,"generatorPatterns":336,"scriptPaths":337,"versionParams":338},[334,335],"\u002Fwp-content\u002Fplugins\u002Fmontypay\u002Fassets\u002Fcss\u002Fbootstrap.min.css","\u002Fwp-content\u002Fplugins\u002Fmontypay\u002Fassets\u002Fjs\u002Fbootstrap.bundle.min.js",[],[],[339],"montypay-bootstrap",{"cssClasses":341,"htmlComments":342,"htmlAttributes":343,"restEndpoints":344,"jsGlobals":346,"shortcodeOutput":347},[],[],[],[345],"\u002Fwp-json\u002Fmontypay\u002Fv1",[],[],{"error":266,"url":349,"statusCode":350,"statusMessage":351,"message":351},"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fmontypay\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":32,"versions":353},[354],{"version":355,"download_url":356,"svn_tag_url":357,"released_at":26,"has_diff":263,"diff_files_changed":358,"diff_lines":26,"trac_diff_url":26,"vulnerabilities":359,"is_current":263},"4.4.0","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fmontypay.4.4.0.zip","https:\u002F\u002Fplugins.svn.wordpress.org\u002Fmontypay\u002Ftags\u002F4.4.0\u002F",[],[]]