Pay with ATH Movil (WooCommerce payment gateway) Security & Risk Analysis

wordpress.org/plugins/pay-with-ath-movil-woocommerce-gateway

Accept ATH Movil payments on your WooCommerce store.

100 active installs v1.2.2 PHP 7.0+ WP 4.4+ Updated Sep 30, 2022
commercee-commerceecommercestorewordpress-ecommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Pay with ATH Movil (WooCommerce payment gateway) Safe to Use in 2026?

Generally Safe

Score 85/100

Pay with ATH Movil (WooCommerce payment gateway) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin "pay-with-ath-movil-woocommerce-gateway" v1.2.2 exhibits a concerning security posture primarily due to its unprotected entry points. While the absence of dangerous functions, raw SQL queries, and known vulnerabilities is a positive sign, the presence of four AJAX handlers without any authentication checks presents a significant risk. This means that any user, regardless of their logged-in status or role, could potentially trigger these AJAX actions, opening the door to various attacks if these handlers perform sensitive operations. The plugin also shows a weakness in output escaping, with only 50% of outputs being properly escaped, which could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not handled securely. The lack of recorded vulnerabilities in its history is a good indicator, but it doesn't negate the immediate risks identified in the static analysis.

Key Concerns

  • Unprotected AJAX handlers
  • Partial output escaping
Vulnerabilities
None known

Pay with ATH Movil (WooCommerce payment gateway) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Pay with ATH Movil (WooCommerce payment gateway) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
4 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

50% escaped8 total outputs
Attack Surface
4 unprotected

Pay with ATH Movil (WooCommerce payment gateway) Attack Surface

Entry Points4
Unprotected4

AJAX Handlers 4

authwp_ajax_athmovil_update_totalswoocommerce-gateway-athmovil.php:154
noprivwp_ajax_athmovil_update_totalswoocommerce-gateway-athmovil.php:155
authwp_ajax_athmovil_validate_checkoutwoocommerce-gateway-athmovil.php:157
noprivwp_ajax_athmovil_validate_checkoutwoocommerce-gateway-athmovil.php:158
WordPress Hooks 9
actionplugins_loadedwoocommerce-gateway-athmovil.php:53
actiondeactivated_pluginwoocommerce-gateway-athmovil.php:54
actionadmin_noticeswoocommerce-gateway-athmovil.php:66
actionadmin_noticeswoocommerce-gateway-athmovil.php:70
actionadmin_initwoocommerce-gateway-athmovil.php:71
actioninitwoocommerce-gateway-athmovil.php:137
filterwoocommerce_payment_gatewayswoocommerce-gateway-athmovil.php:142
actionwp_enqueue_scriptswoocommerce-gateway-athmovil.php:143
actionwoocommerce_review_order_after_submitwoocommerce-gateway-athmovil.php:488
Maintenance & Trust

Pay with ATH Movil (WooCommerce payment gateway) Maintenance & Trust

Maintenance Signals

WordPress version tested5.8.13
Last updatedSep 30, 2022
PHP min version7.0
Downloads5K

Community Trust

Rating88/100
Number of ratings5
Active installs100
Developer Profile

Pay with ATH Movil (WooCommerce payment gateway) Developer Profile

Roberto Torres

2 plugins · 110 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pay with ATH Movil (WooCommerce payment gateway)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pay-with-ath-movil-woocommerce-gateway/assets/css/style.css/wp-content/plugins/pay-with-ath-movil-woocommerce-gateway/assets/js/script.js/wp-content/plugins/pay-with-ath-movil-woocommerce-gateway/assets/js/checkout.js/wp-content/plugins/pay-with-ath-movil-woocommerce-gateway/assets/images/icon.png
Script Paths
/wp-content/plugins/pay-with-ath-movil-woocommerce-gateway/assets/js/script.js/wp-content/plugins/pay-with-ath-movil-woocommerce-gateway/assets/js/checkout.js
Version Parameters
pay-with-ath-movil-woocommerce-gateway/assets/css/style.css?ver=pay-with-ath-movil-woocommerce-gateway/assets/js/script.js?ver=pay-with-ath-movil-woocommerce-gateway/assets/js/checkout.js?ver=

HTML / DOM Fingerprints

CSS Classes
woocommerce-message-closenotice-dismiss
HTML Comments
Awesome Checkout integrates well with the ath movil gatewayRequired minimums and constantsSingleton The reference the *Singleton* instance of this classReturns the *Singleton* instance of this class.+29 more
Data Attributes
athm-awesome-dismissedathm_awesome_notice_dismissedwc_athmovil_add_to_gatewayspayment_scriptsplugin_page_settings_linkstart_checkout_payment+3 more
JS Globals
woocommerce_athmovil_params
FAQ

Frequently Asked Questions about Pay with ATH Movil (WooCommerce payment gateway)