Payment Gateway via ValitorPay for WooCommerce Security & Risk Analysis

wordpress.org/plugins/valitorpay-payment-gateway-for-woocommerce

Take payments in your WooCommerce store using the ValitorPay Gateway

100 active installs v1.2.21 PHP 7.0+ WP 5.5+ Updated Dec 24, 2024
credit-cardpayment-gatewayvalitorvalitorpaywoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Payment Gateway via ValitorPay for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

Payment Gateway via ValitorPay for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of "valitorpay-payment-gateway-for-woocommerce" v1.2.21 indicates a generally good security posture, with no reported CVEs and a focus on secure coding practices. The plugin shows strong adherence to using prepared statements for its SQL queries and a high percentage of properly escaped output, which are crucial for preventing common web vulnerabilities. The absence of dangerous functions and file operations is also a positive sign. However, the presence of unsanitized paths in taint analysis, despite no critical or high severity flows, warrants attention. This suggests potential pathways for attackers to manipulate file or directory operations, though the lack of evidence of exploitation or documented vulnerabilities mitigates immediate high risk. The limited attack surface with no unprotected entry points is commendable.

Key Concerns

  • Unsanitized paths in taint analysis
  • No capability checks found
Vulnerabilities
None known

Payment Gateway via ValitorPay for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Payment Gateway via ValitorPay for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
2
50 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

96% escaped52 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

3 flows2 with unsanitized paths
verify_intent_after_checkout (includes\class-wc-gateway-valitorpay.php:504)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Payment Gateway via ValitorPay for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
filterwoocommerce_subscription_payment_metaincludes\class-wc-gateway-valitorpay-subscriptions.php:18
actionwc_ajax_wc_valitorpay_verify_intentincludes\class-wc-valitorpay-intent-controller.php:26
actionbefore_woocommerce_initvalitorpay-payment-gateway-for-woocommerce.php:53
actionplugins_loadedvalitorpay-payment-gateway-for-woocommerce.php:67
actionadmin_noticesvalitorpay-payment-gateway-for-woocommerce.php:73
filterwoocommerce_payment_gatewaysvalitorpay-payment-gateway-for-woocommerce.php:124
actioninitvalitorpay-payment-gateway-for-woocommerce.php:150
actionadmin_enqueue_scriptsvalitorpay-payment-gateway-for-woocommerce.php:169
actionwoocommerce_checkout_processvalitorpay-payment-gateway-for-woocommerce.php:177
actionwoocommerce_initvalitorpay-payment-gateway-for-woocommerce.php:199
actionwoocommerce_blocks_loadedvalitorpay-payment-gateway-for-woocommerce.php:212
actionwoocommerce_blocks_payment_method_type_registrationvalitorpay-payment-gateway-for-woocommerce.php:217
Maintenance & Trust

Payment Gateway via ValitorPay for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 24, 2024
PHP min version7.0
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Payment Gateway via ValitorPay for WooCommerce Developer Profile

tacticaisdev

2 plugins · 300 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Payment Gateway via ValitorPay for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/valitorpay-payment-gateway-for-woocommerce/admin/styles/valitorpay-admin.css/wp-content/plugins/valitorpay-payment-gateway-for-woocommerce/admin/js/valitorpay-admin.js
Script Paths
/wp-content/plugins/valitorpay-payment-gateway-for-woocommerce/admin/js/valitorpay-admin.js
Version Parameters
valitorpay-payment-gateway-for-woocommerce/admin/styles/valitorpay-admin.css?ver=valitorpay-payment-gateway-for-woocommerce/admin/js/valitorpay-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
valitorpay-card-numbervalitorpay-card-expiryvalitorpay-card-cvc
Data Attributes
data-valitorpay-card-numberdata-valitorpay-card-expirydata-valitorpay-card-cvc
JS Globals
PaymentMethodValitorpay
FAQ

Frequently Asked Questions about Payment Gateway via ValitorPay for WooCommerce