Multi Currency PayPal Donations Security & Risk Analysis

wordpress.org/plugins/multi-currency-paypal-donations

Receive PayPal donations through Wordpress in multiple currencies with the lowest possible fees.

60 active installs v2.2.2 PHP + WP 2.8+ Updated Oct 31, 2015
donatedonationmulti-currencypaypal
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Multi Currency PayPal Donations Safe to Use in 2026?

Generally Safe

Score 85/100

Multi Currency PayPal Donations has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The multi-currency-paypal-donations plugin v2.2.2 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin has a minimal attack surface, with only one entry point (a shortcode) and no apparent unprotected endpoints. The absence of known CVEs and historical vulnerabilities further contributes to this positive assessment, suggesting a commitment to security by the developers. However, there are significant areas for improvement. The very low percentage of properly escaped output (2%) is a major concern, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. Additionally, the lack of nonce checks and capability checks on its entry points means that unauthorized users could potentially trigger actions within the plugin. The SQL query handling also shows room for improvement, with only 20% of queries using prepared statements, which could lead to SQL injection vulnerabilities if not handled carefully within the code.

Key Concerns

  • Low output escaping rate
  • Missing nonce checks
  • Missing capability checks
  • Low prepared statement usage for SQL
Vulnerabilities
None known

Multi Currency PayPal Donations Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Multi Currency PayPal Donations Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
1 prepared
Unescaped Output
96
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

20% prepared5 total queries

Output Escaping

2% escaped98 total outputs
Attack Surface

Multi Currency PayPal Donations Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[paypalDonationForm] multicurrdon.php:16
WordPress Hooks 6
actionadmin_initmulticurrdon.php:13
actionadmin_menumulticurrdon.php:15
actionthe_contentmulticurrdon.php:17
filterplugin_action_linksmulticurrdon.php:18
actionplugins_loadedmulticurrdon.php:19
filterquery_varsmulticurrdon.php:374
Maintenance & Trust

Multi Currency PayPal Donations Maintenance & Trust

Maintenance Signals

WordPress version tested3.5.2
Last updatedOct 31, 2015
PHP min version
Downloads13K

Community Trust

Rating90/100
Number of ratings2
Active installs60
Developer Profile

Multi Currency PayPal Donations Developer Profile

Nick Verwymeren

2 plugins · 1K total installs

76
trust score
Avg Security Score
74/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Multi Currency PayPal Donations

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/multi-currency-paypal-donations/js/hide_script.js/wp-content/plugins/multi-currency-paypal-donations/style/functions.css
Script Paths
/wp-content/plugins/multi-currency-paypal-donations/js/hide_script.js
Version Parameters
multi-currency-paypal-donations/js/hide_script.js?ver=multi-currency-paypal-donations/style/functions.css?ver=

HTML / DOM Fingerprints

Shortcode Output
[paypalDonationForm]
FAQ

Frequently Asked Questions about Multi Currency PayPal Donations