WPJobster Paystack Gateway Security & Risk Analysis

wordpress.org/plugins/paystack-wpjobster-gateway

Payment option for WordPress WPJobster theme by Paystack.

10 active installs v2.0 PHP 5.2.4+ WP 4.6+ Updated Jul 29, 2019
paymentpaystackwpjobster
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WPJobster Paystack Gateway Safe to Use in 2026?

Generally Safe

Score 85/100

WPJobster Paystack Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The plugin 'paystack-wpjobster-gateway' v2.0 exhibits a mixed security posture. On one hand, the absence of known CVEs and the use of prepared statements for all SQL queries are positive indicators. The plugin also reports no dangerous functions or file operations, which are common sources of vulnerabilities.

However, several significant concerns arise from the static analysis. A notable weakness is the complete lack of nonce checks and capability checks across all entry points, which are critical for preventing cross-site request forgery (CSRF) and unauthorized actions. Furthermore, while the plugin has a low number of total outputs, a substantial 38% are not properly escaped, potentially leading to cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in these outputs. The taint analysis revealing unsanitized paths, even without critical or high severity, warrants attention as it suggests potential avenues for data manipulation or leakage. The presence of external HTTP requests also introduces a risk if not handled securely, though their nature isn't specified.

Overall, while the plugin has a clean vulnerability history and handles database interactions securely, the lack of fundamental security checks like nonces and capability checks, coupled with unescaped output and unsanitized paths in taint analysis, represents a significant risk. These omissions create exploitable weaknesses that could be leveraged by attackers.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Unescaped output (38%)
  • Unsanitized paths in taint analysis
  • External HTTP requests (3)
Vulnerabilities
None known

WPJobster Paystack Gateway Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WPJobster Paystack Gateway Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

WPJobster Paystack Gateway Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
18 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
3
Bundled Libraries
0

Output Escaping

62% escaped29 total outputs
Data Flows · Security
3 unsanitized

Data Flow Analysis

3 flows3 with unsanitized paths
processgateway_function (wpjobster-paystack.php:383)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WPJobster Paystack Gateway Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadmin_initwpjobster-paystack.php:83
actionadmin_noticeswpjobster-paystack.php:84
actionplugins_loadedwpjobster-paystack.php:85
filterwpjobster_take_allowed_currency_paystack_gatewaywpjobster-paystack.php:88
actionwpjobster_taketo_paystack_gatewaywpjobster-paystack.php:90
actionwpjobster_processafter_paystack_gatewaywpjobster-paystack.php:91
actionwpjobster_payment_methods_actionwpjobster-paystack.php:94
filterwpjobster_payment_gatewayswpjobster-paystack.php:115
actionwpjobster_show_paymentgateway_formswpjobster-paystack.php:134
Maintenance & Trust

WPJobster Paystack Gateway Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedJul 29, 2019
PHP min version5.2.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

WPJobster Paystack Gateway Developer Profile

paystack

6 plugins · 2K total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WPJobster Paystack Gateway

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/paystack-wpjobster-gateway/assets/css/style.css/wp-content/plugins/paystack-wpjobster-gateway/assets/js/paystack.js
Script Paths
/wp-content/plugins/paystack-wpjobster-gateway/assets/js/paystack.js
Version Parameters
paystack-wpjobster-gateway/assets/css/style.css?ver=paystack-wpjobster-gateway/assets/js/paystack.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Paystack payment gateway settings --><!-- Paystack payment gateway settings --><!-- Enable/Disable Paystack payment gateway --><!-- Enable/Disable Paystack test mode. -->+1 more
Data Attributes
wpjobster_paystack_enablewpjobster_paystack_enablesandboxwpjobster_paystack_tskwpjobster_paystack_tpkwpjobster_paystack_lskwpjobster_paystack_lpk+3 more
FAQ

Frequently Asked Questions about WPJobster Paystack Gateway