Payment gateway via Teya RPG for WooCommerce Security & Risk Analysis

wordpress.org/plugins/payment-gateway-via-borgun-rpg-for-woocommerce

Take payments in your WooCommerce store using the Teya Restful Payment Gateway

100 active installs v1.0.40 PHP 7.0+ WP 4.4+ Updated Dec 19, 2025
credit-cardgatewayteyawoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Payment gateway via Teya RPG for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Payment gateway via Teya RPG for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "payment-gateway-via-borgun-rpg-for-woocommerce" plugin, version 1.0.40, exhibits a generally positive security posture with notable strengths. The absence of any recorded vulnerabilities or CVEs, coupled with 100% of SQL queries using prepared statements and a high percentage (89%) of properly escaped output, indicates a commitment to secure coding practices. The plugin also avoids dangerous functions, file operations, and external HTTP requests, further reducing its attack surface.

However, there are specific areas of concern that warrant attention. The presence of one unprotected AJAX handler presents a potential entry point for unauthenticated attacks. While taint analysis shows no critical or high severity issues, the limited scope of analysis (0 flows analyzed) means this aspect may not be fully comprehensive. The lack of explicit capability checks for its entry points also means that access control might be overly permissive if not handled by the underlying WordPress framework or other plugins.

Overall, the plugin's history of zero vulnerabilities is a strong indicator of its current security. The strengths in SQL and output handling are commendable. The primary weaknesses lie in the unprotected AJAX handler and the potential for unverified capabilities. Addressing the unprotected AJAX endpoint and considering explicit capability checks would further enhance its security. The current version appears relatively secure, but ongoing vigilance and addressing the identified unprotected entry point are recommended.

Key Concerns

  • Unprotected AJAX handler
  • No capability checks on entry points
Vulnerabilities
None known

Payment gateway via Teya RPG for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Payment gateway via Teya RPG for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
64 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
4
Bundled Libraries
0

Output Escaping

89% escaped72 total outputs
Attack Surface
1 unprotected

Payment gateway via Teya RPG for WooCommerce Attack Surface

Entry Points3
Unprotected1

AJAX Handlers 3

noprivwp_ajax_get_borgun_databorgun-rpg.php:95
authwp_ajax_get_borgun_databorgun-rpg.php:96
authwp_ajax_borgun_rpg_notice_dismissborgun-rpg.php:181
WordPress Hooks 14
actionbefore_woocommerce_initborgun-rpg.php:32
actionplugins_loadedborgun-rpg.php:41
actionadmin_noticesborgun-rpg.php:53
filterwoocommerce_payment_gatewaysborgun-rpg.php:57
actionadmin_enqueue_scriptsborgun-rpg.php:161
actionwp_enqueue_scriptsborgun-rpg.php:166
actionswitch_themeborgun-rpg.php:176
actionwoocommerce_blocks_loadedborgun-rpg.php:186
actionwoocommerce_blocks_payment_method_type_registrationborgun-rpg.php:191
actionwc_ajax_wc_borgun_rpg_verify_intentincludes\class-wc-borgun-rpg-intent-controller.php:24
filterwoocommerce_subscription_payment_metaincludes\class-wc-gateway-borgun-rpg-subscriptions.php:13
actionwoocommerce_scheduled_subscription_expirationincludes\class-wc-gateway-borgun-rpg-subscriptions.php:14
actionwoocommerce_update_options_payment_gateways_borgun_rpgincludes\class-wc-gateway-borgun-rpg.php:62
actionwp_enqueue_scriptsincludes\class-wc-gateway-borgun-rpg.php:63
Maintenance & Trust

Payment gateway via Teya RPG for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 19, 2025
PHP min version7.0
Downloads5K

Community Trust

Rating100/100
Number of ratings2
Active installs100
Developer Profile

Payment gateway via Teya RPG for WooCommerce Developer Profile

tacticais

6 plugins · 1K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Payment gateway via Teya RPG for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/payment-gateway-via-borgun-rpg-for-woocommerce/assets/css/styles.css/wp-content/plugins/payment-gateway-via-borgun-rpg-for-woocommerce/assets/admin/js/notice_update.js
Version Parameters
payment-gateway-via-borgun-rpg-for-woocommerce/assets/css/styles.css?ver=payment-gateway-via-borgun-rpg-for-woocommerce/assets/admin/js/notice_update.js?ver=

HTML / DOM Fingerprints

CSS Classes
borgun-rpg-notice
Data Attributes
borgun_ajax
JS Globals
borgun_rpg_notice_dismiss
FAQ

Frequently Asked Questions about Payment gateway via Teya RPG for WooCommerce