Simple Paypal Button For Visual Composer Security & Risk Analysis

wordpress.org/plugins/simple-paypal-button-for-visual-composer

A Simple paypal button visual composer plugin.

30 active installs v1.1 PHP + WP 4.0+ Updated Jun 18, 2016
paymentpaymentspaypalpaypal-buttonvisual-composer
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Paypal Button For Visual Composer Safe to Use in 2026?

Generally Safe

Score 85/100

Simple Paypal Button For Visual Composer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The plugin "simple-paypal-button-for-visual-composer" v1.1 exhibits a generally good security posture based on the static analysis provided. It has a minimal attack surface, with only one shortcode as an entry point, and importantly, no unprotected entry points were identified. The use of prepared statements for all SQL queries is a significant strength, mitigating the risk of SQL injection vulnerabilities. Furthermore, the absence of dangerous functions, file operations, external HTTP requests, and any recorded vulnerabilities in its history suggests careful development practices.

However, there are areas of concern that warrant attention. The most notable issue is that 100% of the total outputs are not properly escaped. This presents a significant risk of cross-site scripting (XSS) vulnerabilities, as user-supplied data could be injected into the output and executed by a user's browser. While the plugin has no recorded historical vulnerabilities, the lack of output escaping is a fundamental security flaw that could easily be exploited. The absence of nonce checks and capability checks, while not directly leading to immediate exploitation in this specific analysis due to the limited attack surface, indicates a potential weakness if the attack surface were to expand or if other vulnerabilities were present.

In conclusion, the plugin demonstrates a strong foundation by avoiding common pitfalls like raw SQL queries and having a limited, protected attack surface. However, the pervasive lack of output escaping is a critical security weakness that needs immediate remediation. The absence of historical vulnerabilities is positive, but it should not be a reason to overlook the current code quality issues.

Key Concerns

  • Unescaped output detected
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Simple Paypal Button For Visual Composer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simple Paypal Button For Visual Composer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped1 total outputs
Attack Surface

Simple Paypal Button For Visual Composer Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[olv_paypal_btn] vc_paypal_button.php:21
WordPress Hooks 3
actioninitvc_paypal_button.php:18
actionwp_enqueue_scriptsvc_paypal_button.php:24
actionadmin_noticesvc_paypal_button.php:31
Maintenance & Trust

Simple Paypal Button For Visual Composer Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedJun 18, 2016
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs30
Developer Profile

Simple Paypal Button For Visual Composer Developer Profile

Kirit Dholakiya

2 plugins · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Paypal Button For Visual Composer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-paypal-button-for-visual-composer/assets/css/style.css/wp-content/plugins/simple-paypal-button-for-visual-composer/assets/js/script.js
Version Parameters
simple-paypal-button-for-visual-composer/assets/css/style.css?ver=simple-paypal-button-for-visual-composer/assets/js/script.js?ver=

HTML / DOM Fingerprints

Shortcode Output
olv_paypal_btn
FAQ

Frequently Asked Questions about Simple Paypal Button For Visual Composer