PAYMILL for WordPress Security & Risk Analysis

wordpress.org/plugins/paymill

With PAYMILL you are able to provide credit card and SEPA based payments for your customers.

30 active installs v1.12a PHP + WP 4.7+ Updated Jan 3, 2019
creditcardpaymentpaymillsepawoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PAYMILL for WordPress Safe to Use in 2026?

Generally Safe

Score 85/100

PAYMILL for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The static analysis of the "paymill" plugin version 1.12a reveals a remarkably clean codebase with no immediate red flags. The plugin exhibits strong adherence to secure coding practices, demonstrated by the absence of dangerous functions, file operations, and external HTTP requests. Crucially, all SQL queries are prepared, and all outputs are properly escaped, indicating a solid defense against common injection and XSS vulnerabilities. The attack surface is also effectively minimized, with zero entry points identified, and importantly, zero of these entry points are unprotected.

The taint analysis further reinforces this positive outlook, showing no identified flows with unsanitized paths. The vulnerability history is equally reassuring, with zero recorded CVEs of any severity, suggesting a well-maintained and secure plugin over its lifespan. This lack of historical vulnerabilities, combined with the current pristine static analysis, points towards a plugin that is likely robust against known attack vectors.

In conclusion, the "paymill" plugin v1.12a presents an exceptionally strong security posture based on the provided data. The developers have clearly prioritized security, implementing best practices that significantly mitigate common risks. While the absence of any identified issues is a strong positive, it's always prudent to maintain vigilance and ensure continued updates as new threats emerge in the broader WordPress ecosystem.

Vulnerabilities
None known

PAYMILL for WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

PAYMILL for WordPress Release Timeline

v1.12.1
v1.12
v1.11
v1.10.9
v1.10.8
v1.10.7
v1.10.6
Code Analysis
Analyzed Apr 16, 2026

PAYMILL for WordPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
5 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared5 total queries
Attack Surface

PAYMILL for WordPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionplugins_loadedpaymill.php:33
actioninitpaymill.php:88
actionadmin_initpaymill.php:89
actionmp_load_gateway_pluginspaymill.php:94
actionshutdownpaymill.php:102
Maintenance & Trust

PAYMILL for WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedJan 3, 2019
PHP min version
Downloads18K

Community Trust

Rating90/100
Number of ratings16
Active installs30
Developer Profile

PAYMILL for WordPress Developer Profile

straightvisions GmbH

12 plugins · 2K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PAYMILL for WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/paymill/lib/debug/debug.log/wp-content/plugins/paymill/lib/benchmark.inc.php/wp-content/plugins/paymill/lib/config.inc.php/wp-content/plugins/paymill/lib/loader.inc.php/wp-content/plugins/paymill/lib/integration/subscriptions.inc.php/wp-content/plugins/paymill/lib/setup.inc.php/wp-content/plugins/paymill/lib/scripts.inc.php/wp-content/plugins/paymill/lib/integration/woocommerce.inc.php+4 more

HTML / DOM Fingerprints

HTML Comments
<!-- query logging --><!-- benchmarking --><!-- todo: create benchmark switch in settings --><!-- start benchmark -->+2 more
JS Globals
paymill_activepaymill_BENCHMARKpaymill_loader
FAQ

Frequently Asked Questions about PAYMILL for WordPress