Advanced PayPal Payments for WooCommerce Security & Risk Analysis

wordpress.org/plugins/wc-advanced-paypal-payments

This plugin is developed by an official PayPal partner and verified by PayPal, providing a secure and reliable payment solution.

70 active installs v3.2.5 PHP 7.1+ WP 5.3+ Updated Dec 11, 2024
ecommercepaymentspaypalwoocommercewoocommerce-paypal
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Advanced PayPal Payments for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

Advanced PayPal Payments for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "wc-advanced-paypal-payments" plugin v3.2.5 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and a clean vulnerability history suggests a commitment to security by the developers. Furthermore, the code analysis reveals good security practices, such as the exclusive use of prepared statements for SQL queries and a high percentage of properly escaped output. The limited attack surface, with no unprotected entry points identified, is also a positive indicator.

Key Concerns

  • Zero capability checks found
  • Only 84% of outputs properly escaped
Vulnerabilities
None known

Advanced PayPal Payments for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Advanced PayPal Payments for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
18
92 escaped
Nonce Checks
7
Capability Checks
0
File Operations
2
External Requests
9
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

84% escaped110 total outputs
Data Flows
All sanitized

Data Flow Analysis

5 flows
wcapp_create_order_function (includes\class-wcapp-ajax.php:89)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Advanced PayPal Payments for WooCommerce Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 1

authwp_ajax_wcapp_shipment_tracking_save_formincludes\class-wcapp-seller-protection.php:20

REST API Routes 1

GET/wp-json/wcapp/v1webhookincludes\class-wcapp-webhook.php:25
WordPress Hooks 30
actioninitadvanced-paypal-payments-for-woocommerce.php:34
actionplugins_loadedadvanced-paypal-payments-for-woocommerce.php:59
actionadmin_noticesadvanced-paypal-payments-for-woocommerce.php:63
filterplugin_row_metaadvanced-paypal-payments-for-woocommerce.php:87
filterscript_loader_tagadvanced-paypal-payments-for-woocommerce.php:220
actionwoocommerce_pay_order_before_submitadvanced-paypal-payments-for-woocommerce.php:281
actionwoocommerce_review_order_after_paymentadvanced-paypal-payments-for-woocommerce.php:282
actionwoocommerce_order_refundedadvanced-paypal-payments-for-woocommerce.php:437
actionwoocommerce_sections_checkoutadvanced-paypal-payments-for-woocommerce.php:580
actionwc_ajax_wcapp_validateincludes\class-wcapp-ajax.php:18
actionwc_ajax_wcapp_create_orderincludes\class-wcapp-ajax.php:19
actionwc_ajax_wcapp_create_order_for_order_payincludes\class-wcapp-ajax.php:20
actionwc_ajax_wcapp_credentialincludes\class-wcapp-ajax.php:21
actionwc_ajax_wcapp_disconnectincludes\class-wcapp-ajax.php:22
actionwc_ajax_wcapp_return_urlincludes\class-wcapp-ajax.php:23
actionwc_ajax_wcapp_captureincludes\class-wcapp-ajax.php:24
actionwc_ajax_wcapp_order_totalincludes\class-wcapp-ajax.php:25
actionwoocommerce_after_add_to_cart_formincludes\class-wcapp-cart.php:17
actionwoocommerce_proceed_to_checkoutincludes\class-wcapp-cart.php:18
actionwc_ajax_wc_wcapp_generate_cartincludes\class-wcapp-cart.php:19
actionwc_ajax_wc_wcapp_redirect_checkoutincludes\class-wcapp-cart.php:20
actionadmin_noticesincludes\class-wcapp-payment-gateway.php:81
actionadmin_noticesincludes\class-wcapp-payment-gateway.php:114
actionadmin_noticesincludes\class-wcapp-payment-gateway.php:310
actionadmin_noticesincludes\class-wcapp-payment-gateway.php:344
filterwoocommerce_payment_gatewaysincludes\class-wcapp-payment-gateway.php:381
actionwoocommerce_admin_order_totals_after_totalincludes\class-wcapp-seller-protection.php:18
actionadd_meta_boxesincludes\class-wcapp-seller-protection.php:19
actionwoocommerce_admin_order_data_after_payment_infoincludes\class-wcapp-seller-protection.php:21
actionrest_api_initincludes\class-wcapp-webhook.php:18
Maintenance & Trust

Advanced PayPal Payments for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 11, 2024
PHP min version7.1
Downloads5K

Community Trust

Rating100/100
Number of ratings1
Active installs70
Developer Profile

Advanced PayPal Payments for WooCommerce Developer Profile

PNX Software

2 plugins · 70 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Advanced PayPal Payments for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wc-advanced-paypal-payments/assets/js/wcapp-cart-page.js/wp-content/plugins/wc-advanced-paypal-payments/assets/js/wcapp-checkout-page.js/wp-content/plugins/wc-advanced-paypal-payments/assets/js/wcapp-product-page.js/wp-content/plugins/wc-advanced-paypal-payments/assets/css/wcapp-admin.css
Script Paths
https://www.paypal.com/sdk/js

HTML / DOM Fingerprints

CSS Classes
wcapp-checkout-containerwcapp-paypal-buttons
HTML Comments
<!-- WCAPP Payment Gateway --><!-- WCAPP Add PayPal Buttons --><!-- WCAPP Checkout Fields -->
Data Attributes
data-wcapp-settingsdata-paypal-client-iddata-paypal-intentdata-paypal-locale
JS Globals
wcapp_cart_paramswcapp_checkout_paramswcapp_product_params
REST Endpoints
/wp-json/wcapp/v1/webhook
FAQ

Frequently Asked Questions about Advanced PayPal Payments for WooCommerce