
Payment Checkout PagSeguro for LifterLMS Security & Risk Analysis
wordpress.org/plugins/payment-checkout-pagseguro-for-lifterlmsEnable PagSeguro Checkout payment (include debit card, credit card, bank slip, payment with account balance, etc) for LifterLMS.
Is Payment Checkout PagSeguro for LifterLMS Safe to Use in 2026?
Generally Safe
Score 100/100Payment Checkout PagSeguro for LifterLMS has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "payment-checkout-pagseguro-for-lifterlms" v2.0.7 exhibits a generally good security posture due to the absence of dangerous functions, 100% properly escaped output, and the use of prepared statements for all SQL queries. The plugin also has no recorded vulnerability history, which is a positive indicator. However, a significant concern arises from the presence of a single unprotected REST API route, representing a clear attack vector that could be exploited without proper authentication or authorization checks. The lack of nonce checks and capability checks further amplifies this risk, as there are no mechanisms to verify user intent or permissions for this entry point.
The static analysis reveals a total of one unprotected entry point, specifically the REST API route. This is the primary area of concern. The absence of taint analysis findings suggests that at this version, known data flow vulnerabilities are not present, but this does not mitigate the direct risk of the unprotected endpoint. The plugin's strengths lie in its secure handling of SQL and output, but the single exposed REST API route is a critical weakness that requires immediate attention to prevent potential unauthorized access or manipulation of functionality.
Key Concerns
- Unprotected REST API route
- REST API route without permission callbacks
- Missing nonce checks
- Missing capability checks
Payment Checkout PagSeguro for LifterLMS Security Vulnerabilities
Payment Checkout PagSeguro for LifterLMS Code Analysis
Output Escaping
Payment Checkout PagSeguro for LifterLMS Attack Surface
REST API Routes 1
WordPress Hooks 10
Maintenance & Trust
Payment Checkout PagSeguro for LifterLMS Maintenance & Trust
Maintenance Signals
Community Trust
Payment Checkout PagSeguro for LifterLMS Alternatives
Payment Gateway of PayPal for WooCommerce
express-checkout-paypal-payment-gateway-for-woocommerce
Enable faster checkout with PayPal for WooCommerce. Add PayPal Express/PayPal Standard gateways that accept PayPal, Pay Later, debit & credit cards.
PagBank / PagSeguro Connect para WooCommerce
pagbank-connect
PagBank com PIX, Cartão de Crédito, Boleto, Recorrência + Envio Fácil e com Menos Taxas no PagSeguro. Autenticação 3D: menos chargeback + aprovações.
PagBank for WooCommerce
pagbank-for-woocommerce
Aceite pagamentos via cartão de crédito, boleto e Pix no checkout do WooCommerce através do PagBank.
Razorpay Payment Button Plugin
razorpay-payment-button
Start accepting payments on WordPress via credit/debit cards, UPI, wallets and more in less than five minutes. One-time and recurring payments.
Razorpay Payment Button Elementor Plugin
razorpay-payment-button-elementor
Start accepting payments on pages or blogs built on Elementor. Offer credit/debit cards, UPI, wallets and more in less than five minutes.
Payment Checkout PagSeguro for LifterLMS Developer Profile
18 plugins · 5K total installs
How We Detect Payment Checkout PagSeguro for LifterLMS
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/payment-checkout-pagseguro-for-lifterlms/includes/js/payment-checkout-pagseguro-for-lifterlms-admin-settings.js/wp-content/plugins/payment-checkout-pagseguro-for-lifterlms/includes/css/payment-checkout-pagseguro-for-lifterlms-admin.css/wp-content/plugins/payment-checkout-pagseguro-for-lifterlms/includes/js/payment-checkout-pagseguro-for-lifterlms-admin-settings.jspayment-checkout-pagseguro-for-lifterlms/includes/js/payment-checkout-pagseguro-for-lifterlms-admin-settings.js?ver=payment-checkout-pagseguro-for-lifterlms/includes/css/payment-checkout-pagseguro-for-lifterlms-admin.css?ver=HTML / DOM Fingerprints
lkn-payment-checkout-pagseguro-for-lifterlms-admin-settings<!-- Enabled by Payment Checkout PagSeguro for LifterLMS -->data-gateway-id="pagseguro-v1"data-lifter-gateway-option-name="pagseguro-v1-payment_instructions"data-lifter-gateway-option-name="pagseguro-v1-email"data-lifter-gateway-option-name="pagseguro-v1-env_type"data-lifter-gateway-option-name="pagseguro-v1-token_key"lknPaymentCheckoutPagseguroForLifterlmsPhpVariables