
Wetail Payments – Swish Security & Risk Analysis
wordpress.org/plugins/wetail-payments-swishAktivera Swish som en sömlös, säker och mobilvänlig betalningsmetod i din WooCommerce-butik. Snabb onboarding, robust support och byggd för svenska ha …
Is Wetail Payments – Swish Safe to Use in 2026?
Generally Safe
Score 100/100Wetail Payments – Swish has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wetail-payments-swish" plugin v1.2.0 demonstrates a generally good security posture with several strong practices in place. The absence of known CVEs, dangerous functions, and raw SQL queries are significant strengths. The plugin also utilizes prepared statements for its SQL queries and a high percentage (94%) of its outputs are properly escaped, which are excellent indicators of secure coding. Furthermore, all identified entry points (AJAX handlers and REST API routes) appear to have proper authentication and permission checks, contributing to a reduced attack surface.
However, there are areas for concern. The taint analysis revealed two flows with unsanitized paths. While these did not reach a critical or high severity in this specific analysis, unsanitized paths can be a gateway to more severe vulnerabilities if not handled carefully, especially when combined with file operations or external HTTP requests. The presence of file operations and multiple external HTTP requests (7 in total) coupled with the unsanitized paths warrants careful review to ensure these operations are not exploitable.
The plugin's vulnerability history is currently clean, which is a positive sign. This suggests either good past development practices or limited exposure. However, the absence of past vulnerabilities doesn't guarantee future immunity. The focus should remain on diligent code review and maintaining the current high standards, particularly addressing the identified unsanitized paths.
Key Concerns
- Flows with unsanitized paths found
- File operations present
- Multiple external HTTP requests
Wetail Payments – Swish Security Vulnerabilities
Wetail Payments – Swish Code Analysis
Output Escaping
Data Flow Analysis
Wetail Payments – Swish Attack Surface
AJAX Handlers 3
REST API Routes 2
WordPress Hooks 27
Maintenance & Trust
Wetail Payments – Swish Maintenance & Trust
Maintenance Signals
Community Trust
Wetail Payments – Swish Alternatives
ЮKassa для WooCommerce
yookassa
Прием платежей на сайтах WooCommerce. Разработка и поддержка — компания ЮMoney
Robokassa payment gateway for Woocommerce
robokassa
Позволяет использовать интерфейс (платежный шлюз) для оплаты через Робокассу в WooCommerce. Поддерживает интеграцию чеков (закон 54-ФЗ)
BjornTech Swish for WooCommerce
woo-swish-e-commerce
Accept Swish payments in your webshop. See our guide here on how to set up the plugin with BjornTech as the Technical supplier.
Payment gateway – Robokassa for WooCommerce
wc-robokassa
Integration Robokassa in WooCommerce as payment gateway plugin.
Robokassa for WooCommerce
robokassa-for-woocommerce
Allows you to use Robokassa payment gateway with the WooCommerce plugin.
Wetail Payments – Swish Developer Profile
6 plugins · 540 total installs
How We Detect Wetail Payments – Swish
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wetail-payments-swish/assets/css/wetail-swish-admin.css/wp-content/plugins/wetail-payments-swish/assets/js/wetail-swish-admin.js/wp-content/plugins/wetail-payments-swish/assets/js/wetail-swish-frontend.js/wp-content/plugins/wetail-payments-swish/assets/css/wetail-swish-admin.css/wp-content/plugins/wetail-payments-swish/assets/js/wetail-swish-admin.js/wp-content/plugins/wetail-payments-swish/assets/js/wetail-swish-frontend.jswetail-payments-swish/assets/css/wetail-swish-admin.css?ver=wetail-payments-swish/assets/js/wetail-swish-admin.js?ver=wetail-payments-swish/assets/js/wetail-swish-frontend.js?ver=HTML / DOM Fingerprints
wetail_swish_payment_form<!-- Wetail Swish Payment Gateway --><!-- Wetail Swish Payment Form -->data-wetail-swish-order-iddata-wetail-swish-ajax-urlwetail_swish_params