
Payment Integration Wompi – El Salvador Security & Risk Analysis
wordpress.org/plugins/wompi-el-salvadorIntegración para Wompi - El Salvador para Woocommerce
Is Payment Integration Wompi – El Salvador Safe to Use in 2026?
Generally Safe
Score 85/100Payment Integration Wompi – El Salvador has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wompi-el-salvador" plugin v1.2.7 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries, exclusively utilizing prepared statements, and has no recorded vulnerabilities or CVEs. This suggests a generally conscientious approach to core security areas. However, the static analysis reveals significant areas of concern. The complete lack of nonce checks and capability checks, combined with 63% of output escaping being properly done, indicates a potential for Cross-Site Scripting (XSS) and other injection vulnerabilities where user-supplied data is not adequately validated or neutralized before being outputted.
The taint analysis identifying a flow with unsanitized paths, even if not classified as critical or high, is a red flag. This suggests a potential for path traversal or arbitrary file read/write vulnerabilities, especially considering the presence of a file operation. The plugin also makes multiple external HTTP requests, which could be a vector for compromised communication if not handled securely. While the plugin's vulnerability history is clean, the code signals point to latent risks that could be exploited if not addressed. Therefore, while the plugin avoids known exploits, the lack of fundamental security checks like nonce and capability checks, coupled with the unsanitized path flow, presents a notable risk that requires remediation.
Key Concerns
- No nonce checks detected
- No capability checks detected
- Unsanitized path flow detected
- Improper output escaping (37%)
- File operations present without explicit checks
Payment Integration Wompi – El Salvador Security Vulnerabilities
Payment Integration Wompi – El Salvador Code Analysis
Output Escaping
Data Flow Analysis
Payment Integration Wompi – El Salvador Attack Surface
WordPress Hooks 5
Maintenance & Trust
Payment Integration Wompi – El Salvador Maintenance & Trust
Maintenance Signals
Community Trust
Payment Integration Wompi – El Salvador Alternatives
Payment Integration Wompi
payment-integration-wompi
Integration of Wompi for Woocommerce
Pay with ATH Movil (WooCommerce payment gateway)
pay-with-ath-movil-woocommerce-gateway
Accept ATH Movil payments on your WooCommerce store.
Shipping Servientrega Woocommerce
shipping-servientrega-woocommerce
Servientrega empresa transportadora de Colombia
Subscription Payu Latam
subscription-payu-latam
Receive recurring payments for the countries Brazil, Colombia, Mexico and Peru
Subscription ePayco
subscription-epayco
Receive recurring payments
Payment Integration Wompi – El Salvador Developer Profile
1 plugin · 800 total installs
How We Detect Payment Integration Wompi – El Salvador
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wompi-el-salvador/assets/images/wompi.pngHTML / DOM Fingerprints
/wp-json/wc/v1/wompi_payment