
Модуль приема платежей Банк ПСКБ Security & Risk Analysis
wordpress.org/plugins/pscb-wp-woocommerce-payment-gatewayПрием платежей на сайтах WooCommerce. Разработка и поддержка — АО Банк "ПСКБ".
Is Модуль приема платежей Банк ПСКБ Safe to Use in 2026?
Generally Safe
Score 92/100Модуль приема платежей Банк ПСКБ has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "pscb-wp-woocommerce-payment-gateway" v1.6.1 presents a mixed security posture. On the positive side, the static analysis reveals no dangerous functions, all SQL queries utilize prepared statements, and there are no external HTTP requests or bundled libraries. Crucially, the plugin has no recorded vulnerability history, which suggests a strong track record of security. However, the analysis does highlight significant areas of concern. A complete lack of output escaping (0% properly escaped) is a critical weakness, potentially exposing users to Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the absence of any nonce or capability checks, combined with zero detected entry points that require authentication, indicates a potentially wide and unprotected attack surface, even if no specific entry points were identified in this scan. This lack of explicit security controls on potential entry points is concerning for future expandability or if the plugin's functionality evolves.
Despite the lack of known CVEs and taint flows, the critical flaw in output escaping and the complete absence of authentication and authorization mechanisms for any potential, albeit currently undiscovered, entry points are serious risks. The plugin's strength lies in its clean SQL practices and lack of known historical vulnerabilities. However, the unescaped output and the undeveloped security checks for entry points create a significant risk of XSS attacks and unauthorized actions if new entry points are introduced or if existing ones are later discovered to be vulnerable. This version of the plugin prioritizes functionality over robust security hardening for its output and entry points.
Key Concerns
- No output escaping found
- No nonce checks found
- No capability checks found
Модуль приема платежей Банк ПСКБ Security Vulnerabilities
Модуль приема платежей Банк ПСКБ Code Analysis
Output Escaping
Модуль приема платежей Банк ПСКБ Attack Surface
WordPress Hooks 4
Maintenance & Trust
Модуль приема платежей Банк ПСКБ Maintenance & Trust
Maintenance Signals
Community Trust
Модуль приема платежей Банк ПСКБ Alternatives
Калькулятор стоимости доставки СДЭК для WooCommerce
cdek-delivery-calculator
Расчет стоимости доставки товара транспортной компанией СДЭК. Разработка и поддержка — компания Mint Studio
Прием платежей через Миксплат для WooCommerce
mixplat-gateway-for-woocommerce
Подключите оплату картами, СБП, Mir Pay и мобильные платежи на вашем сайте через Миксплат.
Woo NovaPoshta. Электронная накладная
nova-poshta-declarations
Новая почта электронные накладные. Вывод электронных накладных в заказе (woocommerce).
Paygine payment
paygine
The "Paygine" plugin is a payment solution for WooCommerce websites:
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
Модуль приема платежей Банк ПСКБ Developer Profile
1 plugin · 10 total installs
How We Detect Модуль приема платежей Банк ПСКБ
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pscb-wp-woocommerce-payment-gateway/assets/img/logo_pscb.svgpscb-wp-woocommerce-payment-gateway/assets/css/style.css?ver=pscb-wp-woocommerce-payment-gateway/assets/js/pscb_scripts.js?ver=HTML / DOM Fingerprints
pscb_payment_gateway_option_widget<!-- pscb_payment_gateway_option_widget -->data-merchant_iddata-merchant_keydata-tax_systemdata-work_modedata-widgetdata-send_receipt+19 morepscb_payment_gateway_settingspscb_widget_params/wp-json/pscb-wp-woocommerce-payment-gateway/v1/orders/wp-json/pscb-wp-woocommerce-payment-gateway/v1/payment-status