
پلاگین پرداخت دلخواه Security & Risk Analysis
wordpress.org/plugins/pardakht-delkhahافزونه پرداخت دلخواه وردپرس
Is پلاگین پرداخت دلخواه Safe to Use in 2026?
Use With Caution
Score 63/100پلاگین پرداخت دلخواه has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The 'pardakht-delkhah' v3.0.0 plugin presents a mixed security posture. While it exhibits good practices such as a significant number of capability checks and nonce checks, and a lack of unprotected entry points (AJAX, REST API), there are several concerning signals. The presence of `unserialize` is a red flag, as it can lead to Remote Code Execution (RCE) if not handled with extreme care and proper input validation. Furthermore, the lack of prepared statements for SQL queries is a significant vulnerability, making it susceptible to SQL injection attacks. The taint analysis, while showing no critical or high severity flows, does indicate a notable number of flows with unsanitized paths, suggesting potential for various injection attacks if not properly mitigated by the application logic.
Key Concerns
- Unpatched CVE
- High severity CVE
- SQL queries not using prepared statements
- Dangerous function: unserialize
- Flows with unsanitized paths found
- Significant percentage of output not properly escaped
پلاگین پرداخت دلخواه Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Pardakht Delkhah <= 3.0.0 - Cross-Site Request Forgery
Pardakht Delkhah <= 2.9.8 - Cross-Site Request Forgery to Form Setting Reset
Pardakht Delkhah <= 2.9.2 - Unauthenticated Stored Cross-Site Scripting
پلاگین پرداخت دلخواه Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
پلاگین پرداخت دلخواه Attack Surface
AJAX Handlers 4
Shortcodes 2
WordPress Hooks 23
Maintenance & Trust
پلاگین پرداخت دلخواه Maintenance & Trust
Maintenance Signals
Community Trust
پلاگین پرداخت دلخواه Alternatives
GiveWP – Donation Plugin and Fundraising Platform
give
Accept donations and begin fundraising with GiveWP, the highest rated WordPress donation plugin for online giving.
Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More
charitable
The best WordPress donation plugin. Create fundraising donation forms, accept recurring donations, easy donor management, add crowdfunding, and more.
Accept Donations with PayPal & Stripe
easy-paypal-donation
Add a PayPal or Stripe Donation Button to your website and start collecting donations today. No Coding Required. Official PayPal & Stripe Partner.
Buy Me a Coffee – Button and Widget Plugin
buymeacoffee
A free, fast, and friendly way to accept donations and memberships (recurring payments) from your visitors.
Ko-fi Button
ko-fi-button
Receive donations on your Ko-fi page with a button on your WordPress site.
پلاگین پرداخت دلخواه Developer Profile
7 plugins · 8K total installs
How We Detect پلاگین پرداخت دلخواه
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pardakht-delkhah/assets/css/style.css/wp-content/plugins/pardakht-delkhah/assets/js/custom.js/wp-content/plugins/pardakht-delkhah/assets/js/custom.jspardakht-delkhah/style.css?ver=pardakht-delkhah/script.js?ver=HTML / DOM Fingerprints
cupri-payment-form<!-- custom payment form --><!-- end custom payment form --><!-- end shortcode --><!-- start shortcode -->data-gateway-urldata-actioncupri_ajax_object/wp-json/cupri/v1/process_payment<form class="cupri-payment-form" method="post"><input type="hidden" name="action" value="cupri_action">