
Clover Payment Gateway by Zaytech for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woo-clover-gateway-by-zaytechAccept Clover POS payments from WooCommerce and auto-print orders to your Clover devices in minutes.
Is Clover Payment Gateway by Zaytech for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Clover Payment Gateway by Zaytech for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The 'woo-clover-gateway-by-zaytech' plugin version 1.3.5 demonstrates several good security practices, including the absence of dangerous functions, all SQL queries using prepared statements, and a high percentage of properly escaped output. It also has a limited attack surface with only one AJAX handler, which appears to be protected. Furthermore, the plugin has no critical or high severity vulnerabilities recorded in its history, and all previously known CVEs are patched.
However, there are areas for concern. The presence of six external HTTP requests could potentially be exploited if not handled carefully, and the single AJAX handler relies on nonce and capability checks, which are positive signs. The plugin has a past medium severity vulnerability related to improper access control, indicating that while current security seems good, past issues suggest a need for continued vigilance. The lack of taint analysis results doesn't necessarily mean no issues exist, but rather that the analysis couldn't identify any exploitable flows based on the methodology used.
In conclusion, the plugin has a generally positive security posture with strong adherence to basic secure coding principles. The absence of critical vulnerabilities and the patching of past issues are commendable. Nevertheless, the history of a medium vulnerability and the presence of external HTTP requests warrant ongoing monitoring and security review to ensure no new weaknesses emerge.
Key Concerns
- Previous medium severity vulnerability found
- Six external HTTP requests present
Clover Payment Gateway by Zaytech for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WooCommerce Clover Payment Gateway <= 1.3.1 - Missing Authorization via callback_handler
Clover Payment Gateway by Zaytech for WooCommerce Code Analysis
Output Escaping
Clover Payment Gateway by Zaytech for WooCommerce Attack Surface
AJAX Handlers 1
WordPress Hooks 22
Maintenance & Trust
Clover Payment Gateway by Zaytech for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Clover Payment Gateway by Zaytech for WooCommerce Alternatives
Smart Online Order for Clover
clover-online-orders
Smart Online Order for Clover allows you to receive orders from your Wordpress website and have it sent directly to your Clover POS.
Paystack WooCommerce Payment Gateway
woo-paystack
Paystack for WooCommerce allows your WooCommerce store to accept secure payments from multiple local and global payment channels.
Montonio for WooCommerce
montonio-for-woocommerce
Montonio is a complete checkout solution for online stores that includes all popular payment methods (local banks, card payments, Apple Pay, Google Pa …
NETOPIA Payments Payment Gateway
netopia-payments-payment-gateway
NETOPIA Payments Payment Gateway extends WooCommerce payment options by adding NETOPIA's Payment Gateway options.
SumUp Payment Gateway For WooCommerce
sumup-payment-gateway-for-woocommerce
The SumUp plugin for WooCommerce allows businesses to securely process payments online. Accept payments from customers using a range of payment method …
Clover Payment Gateway by Zaytech for WooCommerce Developer Profile
2 plugins · 2K total installs
How We Detect Clover Payment Gateway by Zaytech for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/css/admin.css/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/css/style.css/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/js/admin.js/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/js/frontend.js/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/js/clover-payment-gateway.js/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/js/admin.js/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/js/frontend.js/wp-content/plugins/woo-clover-gateway-by-zaytech/assets/js/clover-payment-gateway.jswoo-clover-gateway-by-zaytech/assets/css/admin.css?ver=woo-clover-gateway-by-zaytech/assets/css/style.css?ver=woo-clover-gateway-by-zaytech/assets/js/admin.js?ver=woo-clover-gateway-by-zaytech/assets/js/frontend.js?ver=woo-clover-gateway-by-zaytech/assets/js/clover-payment-gateway.js?ver=HTML / DOM Fingerprints
woocci-clover-gateway-settingswoocci_zaytech_message<!-- Clover Payment Gateway by Zaytech for WooCommerce --><!-- Plugin Name: Clover Payment Gateway by Zaytech for WooCommerce -->data-clover-envdata-clover-merchant-iddata-clover-api-keydata-clover-pos-location-iddata-clover-app-idwindow.woocci_clover_settingsvar woocci_clover_settings/wp-json/woocci/v1/process-payment/wp-json/woocci/v1/check-payment