Pagfort Boleto Bancário para WooCommerce Security & Risk Analysis

wordpress.org/plugins/pagfort-boleto

Adicione o Pagfort Boleto como meio de pagamento para receber por boleto bancário em sua loja WooCommerce.

10 active installs v1.0.1 PHP 7.0+ WP 5.0+ Updated Aug 10, 2020
boletoboleto-bancariopagfortpayment-bank-slipwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Pagfort Boleto Bancário para WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Pagfort Boleto Bancário para WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "pagfort-boleto" v1.0.1 plugin exhibits a generally good security posture, with several positive indicators. The complete absence of dangerous functions, all SQL queries using prepared statements, and no file operations or external HTTP requests are strong strengths. Furthermore, the plugin implements nonce and capability checks for all identified entry points, which is a crucial security practice. The lack of any recorded vulnerabilities or CVEs in its history also suggests a stable and well-maintained codebase.

However, there is one notable concern: one of the four identified entry points, specifically a REST API route, lacks a permission callback. This presents an unprotected entry point that could potentially be exploited if sensitive operations are exposed through it. While the taint analysis found no issues, this single unprotected REST API route warrants careful consideration and remediation to ensure a robust security profile. The significant portion of properly escaped output (68%) is a minor point of concern, as even a small percentage of unescaped output can lead to vulnerabilities.

Key Concerns

  • REST API route without permission callback
  • Significant unescaped output
Vulnerabilities
None known

Pagfort Boleto Bancário para WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Pagfort Boleto Bancário para WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
48
101 escaped
Nonce Checks
4
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

68% escaped149 total outputs
Attack Surface
1 unprotected

Pagfort Boleto Bancário para WooCommerce Attack Surface

Entry Points4
Unprotected1

AJAX Handlers 3

authwp_ajax_pagfort_post_test_connectionincludes\class-pagfort-boleto-admin.php:32
authwp_ajax_pagfort_post_add_discountincludes\class-pagfort-boleto-admin.php:33
authwp_ajax_pagfort_post_order_validateincludes\class-pagfort-boleto-admin.php:35

REST API Routes 1

POST/wp-json/pagfort-boleto/v1/orderwsincludes\class-pagfort-ws-api.php:391
WordPress Hooks 16
actionadmin_enqueue_scriptsincludes\class-pagfort-boleto-admin.php:31
actionadd_meta_boxesincludes\class-pagfort-boleto-admin.php:34
actionwoocommerce_email_after_order_tableincludes\class-pagfort-boleto-client.php:23
actioninitincludes\class-pagfort-boleto-client.php:24
actionwoocommerce_order_details_after_order_tableincludes\class-pagfort-boleto-client.php:25
actionwoocommerce_cart_calculate_feesincludes\class-pagfort-boleto-gateway.php:56
actionwoocommerce_review_order_before_paymentincludes\class-pagfort-boleto-gateway.php:57
filterwoocommerce_checkout_fieldsincludes\class-pagfort-boleto-gateway.php:105
actionadmin_noticesincludes\class-pagfort-boleto-gateway.php:108
actionrest_api_initincludes\class-pagfort-ws-api.php:390
actionrest_api_initincludes\class-pagfort-ws-api.php:397
filterrest_pre_serve_requestincludes\class-pagfort-ws-api.php:406
actioninitpagfort-boleto.php:59
filterwoocommerce_payment_gatewayspagfort-boleto.php:72
actionadmin_noticespagfort-boleto.php:78
actionplugins_loadedpagfort-boleto.php:228
Maintenance & Trust

Pagfort Boleto Bancário para WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedAug 10, 2020
PHP min version7.0
Downloads903

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Pagfort Boleto Bancário para WooCommerce Developer Profile

pagfort

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pagfort Boleto Bancário para WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pagfort-boleto/assets/css/pagfort-boleto.css/wp-content/plugins/pagfort-boleto/assets/js/pagfort-boleto.js
Script Paths
/wp-content/plugins/pagfort-boleto/assets/js/pagfort-boleto.js
Version Parameters
pagfort-boleto/assets/css/pagfort-boleto.css?ver=pagfort-boleto/assets/js/pagfort-boleto.js?ver=

HTML / DOM Fingerprints

CSS Classes
pagfort-boleto-field
FAQ

Frequently Asked Questions about Pagfort Boleto Bancário para WooCommerce