payever – WooCommerce Gateway Security & Risk Analysis

wordpress.org/plugins/payever-woocommerce-gateway

With payever you can easily add all your preferred payment options to your checkout. Within minutes! Find more about us: www.getpayever.com

500 active installs v4.4.0 PHP + WP 5.7+ Updated Feb 4, 2026
bnplecommerceinstallmentspaymentwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is payever – WooCommerce Gateway Safe to Use in 2026?

Generally Safe

Score 100/100

payever – WooCommerce Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The 'payever-woocommerce-gateway' plugin v4.4.0 exhibits a generally good security posture, with a high percentage of SQL queries using prepared statements and a very low rate of unescaped output. The plugin also shows no recorded history of past vulnerabilities, which suggests a commitment to security or a lack of historical scrutiny. However, there are a couple of concerning areas. The presence of two REST API routes without proper permission callbacks represents a significant potential attack vector, as these endpoints could be accessed and manipulated by unauthenticated users. Additionally, the use of the 'unserialize' function, while not inherently a vulnerability on its own, can lead to serious security issues if the data being unserialized is not strictly controlled and sanitized, especially in conjunction with other potential weaknesses not immediately apparent in static analysis alone.

Key Concerns

  • REST API routes missing permission callbacks
  • Dangerous function unserialize used
Vulnerabilities
None known

payever – WooCommerce Gateway Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

payever – WooCommerce Gateway Code Analysis

Dangerous Functions
3
Raw SQL Queries
3
25 prepared
Unescaped Output
9
282 escaped
Nonce Checks
11
Capability Checks
1
File Operations
9
External Requests
0
Bundled Libraries
0

Dangerous Functions Found

unserialize'companyData' => ! empty( $company_data_model ) ? unserialize( $company_data_model['company'] ) includes\class-payever-company-search.php:256
unserialize$company_data = unserialize( $company['company'] );includes\class-payever-invoice-manager.php:56
unserialize$company_data = unserialize( $company_data_model['company'] );includes\payment\class-payever-payment-service.php:236

SQL Query Safety

89% prepared28 total queries

Output Escaping

97% escaped291 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

3 flows2 with unsanitized paths
api_download_invoice (includes\class-payever-invoice-api.php:57)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

payever – WooCommerce Gateway Attack Surface

Entry Points18
Unprotected2

AJAX Handlers 16

authwp_ajax_payever_capture_itemincludes\class-payever-ajax.php:22
authwp_ajax_payever_cancel_itemincludes\class-payever-ajax.php:23
authwp_ajax_payever_claim_uploadincludes\class-payever-ajax.php:24
authwp_ajax_payever_claimincludes\class-payever-ajax.php:25
authwp_ajax_payever_invoiceincludes\class-payever-ajax.php:26
authwp_ajax_payever_settleincludes\class-payever-ajax.php:27
authwp_ajax_payever_company_searchincludes\class-payever-company-search.php:91
noprivwp_ajax_payever_company_searchincludes\class-payever-company-search.php:92
authwp_ajax_payever_company_retrieveincludes\class-payever-company-search.php:93
noprivwp_ajax_payever_company_retrieveincludes\class-payever-company-search.php:94
authwp_ajax_payever_save_external_dataincludes\class-payever-company-search.php:95
noprivwp_ajax_payever_save_external_dataincludes\class-payever-company-search.php:96
authwp_ajax_payever_get_status_urlincludes\class-payever-pending-status-page.php:30
noprivwp_ajax_payever_get_status_urlincludes\class-payever-pending-status-page.php:31
authwp_ajax_export_productsincludes\class-payever-synchronization.php:35
noprivwp_ajax_export_productsincludes\class-payever-synchronization.php:36

REST API Routes 2

GET/wp-json/payever/v1/logsincludes\class-payever-log-manager.php:62
GET/wp-json/payever/v1/logs/shopincludes\class-payever-log-manager.php:71
WordPress Hooks 103
actionwoocommerce_admin_order_item_headersincludes\admin\class-payever-admin-order-edit.php:35
actionwoocommerce_admin_order_item_valuesincludes\admin\class-payever-admin-order-edit.php:42
actionwoocommerce_order_item_add_action_buttonsincludes\admin\class-payever-admin-order-edit.php:49
actionwoocommerce_admin_order_totals_after_taxincludes\admin\class-payever-admin-order-edit.php:54
filterwoocommerce_admin_order_should_render_refundsincludes\admin\class-payever-admin-order-edit.php:59
filterwoocommerce_settings_tabs_arrayincludes\admin\class-payever-admin-settings.php:61
actionwoocommerce_admin_field_payever_synchronization_buttonincludes\admin\class-payever-admin-settings.php:72
actionwoocommerce_admin_field_payever_set_sandbox_modeincludes\admin\class-payever-admin-settings.php:79
actionwoocommerce_admin_field_payever_embedded_supportincludes\admin\class-payever-admin-settings.php:86
actionwoocommerce_admin_field_payever_toggle_subscriptionincludes\admin\class-payever-admin-settings.php:93
actionwoocommerce_admin_field_payever_fe_synchronization_buttonincludes\admin\class-payever-admin-settings.php:100
actionwoocommerce_admin_field_payever_download_logs_buttonincludes\admin\class-payever-admin-settings.php:108
actionadd_meta_boxesincludes\admin\class-payever-admin-shipping.php:16
filterwoocommerce_get_settings_payever_settingsincludes\class-payever-company-search.php:47
filterwoocommerce_get_sections_payever_settingsincludes\class-payever-company-search.php:55
actionpayever_synchronize_payment_optionsincludes\class-payever-company-search.php:61
actionwp_enqueue_scriptsincludes\class-payever-company-search.php:66
actionwp_enqueue_scriptsincludes\class-payever-company-search.php:73
actionwoocommerce_checkout_before_customer_detailsincludes\class-payever-company-search.php:79
filterwoocommerce_checkout_get_valueincludes\class-payever-company-search.php:84
actionwoocommerce_cart_calculate_feesincludes\class-payever-fees.php:28
actionwp_enqueue_scriptsincludes\class-payever-fees.php:29
actionwoocommerce_api_payever_finance_express_successincludes\class-payever-finance-express-api.php:56
actionwoocommerce_api_payever_finance_express_cancelincludes\class-payever-finance-express-api.php:60
actionwoocommerce_api_payever_finance_express_failureincludes\class-payever-finance-express-api.php:64
actionwoocommerce_api_payever_finance_express_noticeincludes\class-payever-finance-express-api.php:68
actionwoocommerce_api_payever_finance_express_quotecallbackincludes\class-payever-finance-express-api.php:72
filterwoocommerce_thankyou_order_received_textincludes\class-payever-gateway.php:106
actionwoocommerce_api_payever_execute_commandsincludes\class-payever-gateway.php:123
actionwoocommerce_order_details_after_order_table_itemsincludes\class-payever-gateway.php:131
actionwoocommerce_email_after_order_tableincludes\class-payever-gateway.php:139
actionwoocommerce_cancel_unpaid_ordersincludes\class-payever-gateway.php:149
filterpayever_feature_enabledincludes\class-payever-hooks.php:15
filterpayever_roundincludes\class-payever-hooks.php:21
filterpayever_formatincludes\class-payever-hooks.php:22
filterwoocommerce_order_data_store_cpt_get_orders_queryincludes\class-payever-hooks.php:23
filterwoocommerce_order_received_verify_known_shoppersincludes\class-payever-hooks.php:29
actionwoocommerce_api_payever_get_invoiceincludes\class-payever-invoice-api.php:16
actionwoocommerce_api_payever_invoicesincludes\class-payever-invoice-api.php:21
actionrest_api_initincludes\class-payever-log-manager.php:61
actionrest_api_initincludes\class-payever-log-manager.php:70
actionwoocommerce_api_payever_download_logsincludes\class-payever-log-manager.php:80
actioninitincludes\class-payever-migration.php:33
actioninitincludes\class-payever-migration.php:42
actionadmin_noticesincludes\class-payever-migration.php:90
actionwoocommerce_order_status_changedincludes\class-payever-order-changes.php:13
actionwp_enqueue_scriptsincludes\class-payever-pending-status-page.php:12
actionthe_postincludes\class-payever-pending-status-page.php:13
actionwoocommerce_after_template_partincludes\class-payever-pending-status-page.php:14
filterwoocommerce_endpoint_order-received_titleincludes\class-payever-pending-status-page.php:15
filterwoocommerce_thankyou_order_received_textincludes\class-payever-pending-status-page.php:21
actionwoocommerce_api_payever_synchronizationincludes\class-payever-synchronization.php:23
actionwoocommerce_api_payever_set_sandbox_api_keysincludes\class-payever-synchronization.php:24
actionwoocommerce_api_payever_set_live_api_keysincludes\class-payever-synchronization.php:25
actionwoocommerce_api_payever_toggle_subscriptionincludes\class-payever-synchronization.php:26
actionwoocommerce_api_payever_synchronization_incomingincludes\class-payever-synchronization.php:27
actionwoocommerce_api_payever_fe_synchronizationincludes\class-payever-synchronization.php:34
actionupgrader_process_completeincludes\class-payever-synchronization.php:37
actionadmin_noticesincludes\class-payever-synchronization.php:38
actionadmin_noticesincludes\class-payever-synchronization.php:39
filterpayever_notification_get_handlerincludes\notification\handlers\class-payever-notification-cancel-amount-handler.php:13
actionpayever_notification_handler_cancel_amountincludes\notification\handlers\class-payever-notification-cancel-amount-handler.php:19
filterpayever_notification_get_handlerincludes\notification\handlers\class-payever-notification-refund-amount-handler.php:13
actionpayever_notification_handler_refund_amountincludes\notification\handlers\class-payever-notification-refund-amount-handler.php:19
filterpayever_notification_get_handlerincludes\notification\handlers\class-payever-notification-refund-items-handler.php:13
actionpayever_notification_handler_refund_itemsincludes\notification\handlers\class-payever-notification-refund-items-handler.php:19
filterpayever_notification_get_handlerincludes\notification\handlers\class-payever-notification-shipping-amount-handler.php:13
actionpayever_notification_handler_shipping_amountincludes\notification\handlers\class-payever-notification-shipping-amount-handler.php:19
filterpayever_notification_get_handlerincludes\notification\handlers\class-payever-notification-shipping-items-handler.php:13
actionpayever_notification_handler_shipping_itemsincludes\notification\handlers\class-payever-notification-shipping-items-handler.php:19
actionpayever_handle_callbackincludes\payment\class-payever-callback-handler.php:38
actionwoocommerce_before_main_contentincludes\payment\class-payever-callback-handler.php:39
actionwoocommerce_before_cartincludes\payment\class-payever-callback-handler.php:40
filterrender_blockincludes\payment\class-payever-callback-handler.php:41
actionpayever_update_orderincludes\payment\class-payever-payment-handler.php:52
actioninitincludes\plugin\class-payever-plugin-version.php:59
actionadmin_noticesincludes\plugin\class-payever-plugin-version.php:64
actionadmin_noticesincludes\plugin\class-payever-plugin-version.php:81
actionwoocommerce_new_productincludes\synchronization\class-payever-outward-actions.php:37
actionwoocommerce_update_productincludes\synchronization\class-payever-outward-actions.php:38
actionwoocommerce_delete_product_variationincludes\synchronization\class-payever-outward-actions.php:39
actionwoocommerce_trash_product_variationincludes\synchronization\class-payever-outward-actions.php:46
actionwp_delete_postincludes\synchronization\class-payever-outward-actions.php:53
actionwp_trash_postincludes\synchronization\class-payever-outward-actions.php:54
actionwoocommerce_product_object_updated_propsincludes\synchronization\class-payever-outward-actions.php:55
filterwoocommerce_update_product_stock_queryincludes\synchronization\class-payever-outward-actions.php:64
actionadmin_noticeswoocommerce-payever-gateway.php:93
actionpayever_daily_eventwoocommerce-payever-gateway.php:119
actionpayever_hourly_eventwoocommerce-payever-gateway.php:130
actionplugins_loadedwoocommerce-payever-gateway.php:138
actionwoocommerce_loadedwoocommerce-payever-gateway.php:139
actionwp_enqueue_scriptswoocommerce-payever-gateway.php:140
actionadmin_enqueue_scriptswoocommerce-payever-gateway.php:141
actionwp_enqueue_scriptswoocommerce-payever-gateway.php:142
actionwoocommerce_blocks_loadedwoocommerce-payever-gateway.php:143
filterwoocommerce_register_log_handlerswoocommerce-payever-gateway.php:146
filterwoocommerce_format_log_entrywoocommerce-payever-gateway.php:162
actionbefore_woocommerce_initwoocommerce-payever-gateway.php:178
filterwoocommerce_gateway_method_titlewoocommerce-payever-gateway.php:192
actionwoocommerce_blocks_payment_method_type_registrationwoocommerce-payever-gateway.php:238
actionadmin_noticeswoocommerce-payever-gateway.php:446
filterwoocommerce_payment_gatewayswoocommerce-payever-gateway.php:451
filterwc_order_statuseswoocommerce-payever-gateway.php:511

Scheduled Events 2

payever_daily_event
payever_hourly_event
Maintenance & Trust

payever – WooCommerce Gateway Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 4, 2026
PHP min version
Downloads17K

Community Trust

Rating0/100
Number of ratings0
Active installs500
Developer Profile

payever – WooCommerce Gateway Developer Profile

payever

2 plugins · 500 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect payever – WooCommerce Gateway

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/payever-woocommerce-gateway/assets/js/checkout.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/capture.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/cancel.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/claim.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/invoice.js/wp-content/plugins/payever-woocommerce-gateway/assets/css/frontend/checkout.css
Script Paths
/wp-content/plugins/payever-woocommerce-gateway/assets/js/checkout.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/capture.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/cancel.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/claim.js/wp-content/plugins/payever-woocommerce-gateway/assets/js/admin/invoice.js
Version Parameters
payever-woocommerce-gateway/assets/js/checkout.js?ver=payever-woocommerce-gateway/assets/js/admin/capture.js?ver=payever-woocommerce-gateway/assets/js/admin/cancel.js?ver=payever-woocommerce-gateway/assets/js/admin/claim.js?ver=payever-woocommerce-gateway/assets/js/admin/invoice.js?ver=payever-woocommerce-gateway/assets/css/frontend/checkout.css?ver=

HTML / DOM Fingerprints

CSS Classes
payever-payment-gateway-wrapper
Data Attributes
data-payever-order-iddata-payever-order-totaldata-payever-order-currency
JS Globals
payever_checkout_paramspayever_admin_paramspayever_invoice_params
REST Endpoints
/wp-json/payever-payments/v1/capture/wp-json/payever-payments/v1/cancel/wp-json/payever-payments/v1/claim/wp-json/payever-payments/v1/invoice
FAQ

Frequently Asked Questions about payever – WooCommerce Gateway