
Paytium: Mollie payment forms & donations Security & Risk Analysis
wordpress.org/plugins/paytiumMollie forms for payments and donations. With iDEAL | WERO , PayPal, Credit/Debet cards, subscriptions and recurring payments!
Is Paytium: Mollie payment forms & donations Safe to Use in 2026?
Generally Safe
Score 94/100Paytium: Mollie payment forms & donations has a strong security track record. Known vulnerabilities have been patched promptly.
The "paytium" plugin v5.0.2 exhibits a mixed security posture. On the positive side, it demonstrates good practices in SQL query handling, utilizing prepared statements for all queries, and a high percentage of output escaping. It also includes a significant number of capability checks, suggesting an awareness of authorization mechanisms.
However, several areas raise significant concerns. The presence of 3 unprotected AJAX handlers within its substantial attack surface of 29 entry points is a critical weakness. Furthermore, the taint analysis revealed 6 flows with unsanitized paths, all classified as high severity. This, combined with 13 historical CVEs, particularly those related to exposure of sensitive information, missing authorization, and cross-site scripting, indicates a recurring pattern of security vulnerabilities. The plugin also uses the `unserialize` function 23 times, which is a known vector for deserialization vulnerabilities if not handled with extreme care.
In conclusion, while "paytium" v5.0.2 shows some strengths in its coding practices, the significant number of unprotected entry points, high-severity taint flows, and a history of common and severe vulnerability types collectively point to a substantial risk. The plugin requires immediate attention to address the identified weaknesses and mitigate potential exploitation.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
- High number of historical CVEs
- Use of unserialize function
- Bundled Select2 library
- Bundled TinyMCE library
Paytium: Mollie payment forms & donations Security Vulnerabilities
CVEs by Year
Severity Breakdown
13 total CVEs
Paytium <= 4.4.11 - Unauthenticated Full Path Disclosure
Paytium <= 4.4.10 - Missing Authorization
Paytium: Mollie payment forms & donations <= 4.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via shortcode
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'pt_cancel_subscription'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'update_profile_preference'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'paytium_sw_save_api_keys'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'check_for_verified_profiles'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'create_mollie_account'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'paytium_notice_dismiss'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'check_mollie_account_details'
Paytium: Mollie payment forms & donations <= 4.3.7 - Missing Authorization in 'create_mollie_profile'
Paytium <= 4.3.6 - Authenticated (Admin+) Stored Cross-Site Scripting
Paytium <= 3.1.1 - Stored Cross-Site Scripting
Paytium: Mollie payment forms & donations Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Paytium: Mollie payment forms & donations Attack Surface
AJAX Handlers 12
Shortcodes 17
WordPress Hooks 58
Maintenance & Trust
Paytium: Mollie payment forms & donations Maintenance & Trust
Maintenance Signals
Community Trust
Paytium: Mollie payment forms & donations Alternatives
Mollie Payments for WooCommerce
mollie-payments-for-woocommerce
Accept all major payment methods in WooCommerce today. Credit cards, iDEAL and more! Fast, safe and intuitive.
Stripe Payment Forms by WP Full Pay – Accept Credit Card Payments, Donations & Subscriptions
wp-full-stripe-free
🚀 Create Stripe payment forms for WordPress. Accept credit cards, Apple Pay, donations, subscriptions & more. Easy setup, no coding needed!
Doneren met Mollie
doneren-met-mollie
This plugin is both suitable for one-time donations and for periodic payments. All payment methods of Mollie are integrated into the plugin.
MultiSafepay plugin for WooCommerce
multisafepay
MultiSafepay offers the most comprehensive payment solutions. Easily integrate the payment solutions of MultiSafepay into your webshop.
GF Mollie by Indigo
gf-mollie-by-indigo
You can link Mollie to Gravity Forms with GF Mollie by Indigo.
Paytium: Mollie payment forms & donations Developer Profile
1 plugin · 3K total installs
How We Detect Paytium: Mollie payment forms & donations
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/paytium/assets/css/paytium-admin.css/wp-content/plugins/paytium/assets/css/paytium-public.css/wp-content/plugins/paytium/assets/js/paytium-admin.js/wp-content/plugins/paytium/assets/js/paytium-public.js/wp-content/plugins/paytium/assets/js/paytium-scripts.js/wp-content/plugins/paytium/assets/js/tinymce/plugins/paytiumbutton/plugin.js/wp-content/plugins/paytium/assets/js/paytium-admin.js/wp-content/plugins/paytium/assets/js/paytium-public.js/wp-content/plugins/paytium/assets/js/paytium-scripts.js/wp-content/plugins/paytium/assets/js/tinymce/plugins/paytiumbutton/plugin.jspaytium-admin-css?ver=paytium-admin-js?ver=paytium-public-css?ver=paytium-public-js?ver=paytium-scripts?ver=HTML / DOM Fingerprints
paytium-admin-noticespaytium_sectionpaytium-admin-search-results<!-- Paytium Edit Payment Back Button --><!-- End Paytium Edit Payment Back Button -->data-pt-payment-iddata-pt-ajax-urlPaytiumAdmin