Robokassa for Jigoshop Security & Risk Analysis

wordpress.org/plugins/robokassa-for-jigoshop

Allows you to use Robokassa payment gateway with the Jigoshop ecommerce plugin.

10 active installs v0.9.1 PHP + WP 3.0+ Updated Apr 10, 2012
ecommercejigoshoppayment-getawayrobokassa
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Robokassa for Jigoshop Safe to Use in 2026?

Generally Safe

Score 85/100

Robokassa for Jigoshop has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The robokassa-for-jigoshop plugin v0.9.1 exhibits a concerning security posture despite a clean vulnerability history. The static analysis reveals a complete lack of proper output escaping across all detected output points. This is a significant weakness, as it opens the door to Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into web pages viewed by users. Furthermore, the taint analysis indicates a high number of flows with unsanitized paths, which, while not flagged as critical or high severity in this analysis, still points to potential issues where user-supplied data might not be properly handled before being used in sensitive operations. The absence of any recorded CVEs is a positive historical indicator, but it cannot mitigate the immediate risks identified in the current code analysis.

Key Concerns

  • All outputs are unescaped
  • Taint analysis shows unsanitized paths
Vulnerabilities
None known

Robokassa for Jigoshop Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Robokassa for Jigoshop Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped8 total outputs
Data Flows
4 unsanitized

Data Flow Analysis

4 flows4 with unsanitized paths
jingoshop_robokassa (robokassa.php:33)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Robokassa for Jigoshop Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadedrobokassa.php:32
actioninitrobokassa.php:51
actionvalid-robokassa-callbackrobokassa.php:52
actionjigoshop_update_optionsrobokassa.php:53
actionreceipt_robokassarobokassa.php:54
filterjigoshop_payment_gatewaysrobokassa.php:293
Maintenance & Trust

Robokassa for Jigoshop Maintenance & Trust

Maintenance Signals

WordPress version tested3.3.2
Last updatedApr 10, 2012
PHP min version
Downloads2K

Community Trust

Rating20/100
Number of ratings1
Active installs10
Developer Profile

Robokassa for Jigoshop Developer Profile

akurganow

3 plugins · 220 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Robokassa for Jigoshop

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Data Attributes
jigoshop_robokassa_enabledjigoshop_robokassa_titlejigoshop_robokassa_merchantjigoshop_robokassa_key1jigoshop_robokassa_key2jigoshop_robokassa_test
FAQ

Frequently Asked Questions about Robokassa for Jigoshop