
MultiSafepay plugin for WooCommerce Security & Risk Analysis
wordpress.org/plugins/multisafepayMultiSafepay offers the most comprehensive payment solutions. Easily integrate the payment solutions of MultiSafepay into your webshop.
Is MultiSafepay plugin for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100MultiSafepay plugin for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The multisafepay plugin version 6.12.0 exhibits a concerning security posture due to a significant number of unprotected entry points. All 12 AJAX handlers and 3 REST API routes lack proper authentication or permission checks, creating a large attack surface that could be exploited by unauthenticated users. While the code analysis indicates good practices regarding SQL queries (100% prepared statements) and a low number of file operations and external HTTP requests, the widespread lack of input validation on entry points is a critical weakness. The vulnerability history reveals a past Path Traversal vulnerability, which, combined with the current lack of input sanitization on entry points, suggests a potential for similar issues if data is not handled rigorously.
Despite the positive aspects of secure SQL execution and a decent output escaping rate (71%), the absence of authorization on numerous entry points overshadows these strengths. The taint analysis showing zero flows is encouraging, but it may not be comprehensive enough to detect vulnerabilities in the unprotected entry points that were not analyzed via taint flow. The plugin's history and current findings indicate a need for immediate attention to securing all entry points to prevent potential unauthorized access or data manipulation.
Key Concerns
- 12 AJAX handlers without auth checks
- 3 REST API routes without permission callbacks
- 1 past high severity vulnerability (Path Traversal)
- 71% of outputs properly escaped
MultiSafepay plugin for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
MultiSafepay plugin for WooCommerce <= 4.15.0 - Arbitrary File Read
MultiSafepay plugin for WooCommerce Code Analysis
Output Escaping
MultiSafepay plugin for WooCommerce Attack Surface
AJAX Handlers 12
REST API Routes 3
WordPress Hooks 36
Maintenance & Trust
MultiSafepay plugin for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
MultiSafepay plugin for WooCommerce Alternatives
PayPlus Payment Gateway
payplus-payment-gateway
Accept credit/debit card payments or other methods such as bit, Apple Pay, Google Pay in one page. Create digitally signed invoices & much more!
Novalnet Payment Gateway for WooCommerce
woocommerce-novalnet-gateway
Novalnet payment plugin provides all popular online payment methods for your WooCommerce webshop.
seQura
sequra
Flexible payment platform that enhances business conversion and recurrence. The easiest, safest, and quickest way for customers to pay installments.
Skrill – WooCommerce
official-skrill-woocommerce
Accept payments using cards, over 20 local payment methods and more than 80 banks via Skrill.
Payop Official
payop-woocommerce
Add the ability to accept payments in WooCommerce via Payop.com.
MultiSafepay plugin for WooCommerce Developer Profile
1 plugin · 2K total installs
How We Detect MultiSafepay plugin for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/multisafepay/assets/css/multisafepay-blocks.css/wp-content/plugins/multisafepay/assets/css/multisafepay-common.css/wp-content/plugins/multisafepay/assets/css/multisafepay-settings.css/wp-content/plugins/multisafepay/assets/js/multisafepay-blocks.js/wp-content/plugins/multisafepay/assets/js/multisafepay-common.js/wp-content/plugins/multisafepay/assets/js/multisafepay-settings.js/wp-content/plugins/multisafepay/assets/js/multisafepay-checkout.js/wp-content/plugins/multisafepay/assets/js/multisafepay-admin-checkout.js+1 moreMultiSafepay Payment Plugin v6.12.0/wp-content/plugins/multisafepay/assets/js/multisafepay-blocks.js/wp-content/plugins/multisafepay/assets/js/multisafepay-common.js/wp-content/plugins/multisafepay/assets/js/multisafepay-settings.js/wp-content/plugins/multisafepay/assets/js/multisafepay-checkout.js/wp-content/plugins/multisafepay/assets/js/multisafepay-admin-checkout.js/wp-content/plugins/multisafepay/assets/js/multisafepay-admin-settings.jsmultisafepay/assets/css/multisafepay-blocks.css?ver=multisafepay/assets/css/multisafepay-common.css?ver=multisafepay/assets/css/multisafepay-settings.css?ver=multisafepay/assets/js/multisafepay-blocks.js?ver=multisafepay/assets/js/multisafepay-common.js?ver=multisafepay/assets/js/multisafepay-settings.js?ver=multisafepay/assets/js/multisafepay-checkout.js?ver=multisafepay/assets/js/multisafepay-admin-checkout.js?ver=multisafepay/assets/js/multisafepay-admin-settings.js?ver=HTML / DOM Fingerprints
multisafepay-settingsmultisafepay-commonmultisafepay-blocksmultisafepay-settings-page<!-- MultiSafepay Settings --><!-- MultiSafepay common settings --><!-- MultiSafepay blocks compatibility --><!-- MultiSafepay admin settings -->data-multisafepay-settingsdata-multisafepay-admin-settingswindow.multisafepay_paramsvar multisafepay_paramswindow.multisafepay_settings_paramsvar multisafepay_settings_paramswindow.multisafepay_blocks_paramsvar multisafepay_blocks_params/wp-json/multisafepay/v1/settings/wp-json/multisafepay/v1/orders[multisafepay_payment_button][multisafepay_checkout][multisafepay_order_status]