
Morkva Liqpay Extended Security & Risk Analysis
wordpress.org/plugins/mrkv-liqpay-extendedПлатіжний модуль LiqPay з callback.
Is Morkva Liqpay Extended Safe to Use in 2026?
Generally Safe
Score 100/100Morkva Liqpay Extended has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The mrkv-liqpay-extended plugin v0.8.6 exhibits a concerning security posture primarily due to its unprotected AJAX handlers. While the plugin demonstrates good practices in its handling of SQL queries by exclusively using prepared statements and shows no recorded vulnerability history, the presence of four AJAX handlers without any authentication or authorization checks presents a significant attack surface. This means any unauthenticated user could potentially interact with these handlers, leading to unintended actions or information disclosure depending on their functionality. The taint analysis reveals two flows with unsanitized paths, which, although not classified as critical or high severity, warrants attention as these could potentially be exploited if they interact with user-supplied input. The plugin also has a 50% rate of properly escaped output, indicating that some data displayed to users may not be adequately sanitized, potentially opening the door for cross-site scripting (XSS) vulnerabilities. In conclusion, while the absence of known CVEs and robust SQL handling are positive signs, the lack of security checks on a substantial portion of its entry points is a critical weakness that elevates the risk profile of this plugin.
Key Concerns
- AJAX handlers without authentication checks
- Unsanitized paths in taint analysis flows
- 50% of outputs not properly escaped
Morkva Liqpay Extended Security Vulnerabilities
Morkva Liqpay Extended Code Analysis
Output Escaping
Data Flow Analysis
Morkva Liqpay Extended Attack Surface
AJAX Handlers 4
WordPress Hooks 13
Maintenance & Trust
Morkva Liqpay Extended Maintenance & Trust
Maintenance Signals
Community Trust
Morkva Liqpay Extended Alternatives
Payment Gateway for LiqPay for Woocommerce
wc-liqpay
Plugin for paying for products through the LiqPay service. Works in conjunction with the Woocommerce plugin
WebPlus Gateway for LiqPay on WooCommerce
webplus-liqpay-woocommerce
Плагин LiqPay для WooCommerce
LiqPay payment gateway for WooCommerce
wc-liqpay-payments
Plugin that adds supporting of LiqPay payment gateway to your WooCommerce store.
Easy LiqPay
easy-liqpay
Adding a form for receive donations use the LiqPay
Saphali LiqPay for donate
saphali-liqpay-for-donate
Кнопка для приема пожертвований с помощью LiqPay (v 3.0). Работа заключается в добавлении шорткода на страницу при ее редактировании (добавляется нажа …
Morkva Liqpay Extended Developer Profile
14 plugins · 3K total installs
How We Detect Morkva Liqpay Extended
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mrkv-liqpay-extended/css/morkva-liqpay-admin.css/wp-content/plugins/mrkv-liqpay-extended/js/admin/admin-mrkv-liqpay.js/wp-content/plugins/mrkv-liqpay-extended/css/morkva-liqpay-front.css/wp-content/plugins/mrkv-liqpay-extended/js/admin/admin-mrkv-liqpay.jsmrkv-liqpay-extended/css/morkva-liqpay-admin.css?ver=mrkv-liqpay-extended/js/admin/admin-mrkv-liqpay.js?ver=mrkv-liqpay-extended/css/morkva-liqpay-front.css?ver=HTML / DOM Fingerprints
morkva-liqpay-adminmorkva-liqpay-front