
Módulo PagSeguro Security & Risk Analysis
wordpress.org/plugins/woo-pagseguro-rmAdiciona PagSeguro aos meios de pagamento WooCommerce com taxas especiais de parceiro (ex: 3,15% no crédito).
Is Módulo PagSeguro Safe to Use in 2026?
Generally Safe
Score 92/100Módulo PagSeguro has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'woo-pagseguro-rm' v3.16.7 exhibits a generally strong security posture based on the provided static analysis. It demonstrates excellent practices in its handling of SQL queries, exclusively using prepared statements, and a high percentage of properly escaped output, minimizing the risk of common injection and cross-site scripting vulnerabilities. The absence of any recorded historical vulnerabilities (CVEs) further suggests a well-maintained and secure codebase. The limited attack surface with no exposed AJAX handlers, REST API routes, shortcodes, or cron events without proper authentication or permission checks is a significant strength.
However, the presence of two instances of the `unserialize` function is a notable concern. While the static analysis does not indicate any taint flows stemming from these functions, `unserialize` is inherently dangerous if used with untrusted data, as it can lead to Remote Code Execution or other severe vulnerabilities. The lack of any recorded nonce checks, while not directly flagged as a risk in this specific analysis due to the zero attack surface, could become a vulnerability if new entry points are introduced without corresponding security checks. The plugin also makes four external HTTP requests, which, while not explicitly flagged as risky here, could be a vector for vulnerabilities if the external endpoints are compromised or if the data sent/received is not properly handled.
In conclusion, the plugin is largely secure with good practices in place. The primary area of caution revolves around the use of `unserialize` without clear indication of how the input is validated. The absence of historical vulnerabilities is a positive sign, but developers should remain vigilant, especially regarding the use of potentially dangerous functions and the secure handling of external requests. The lack of obvious vulnerabilities in this specific analysis should not lead to complacency.
Key Concerns
- Dangerous function 'unserialize' used
- 0 Nonce checks found
Módulo PagSeguro Security Vulnerabilities
Módulo PagSeguro Code Analysis
Dangerous Functions Found
Output Escaping
Módulo PagSeguro Attack Surface
WordPress Hooks 13
Maintenance & Trust
Módulo PagSeguro Maintenance & Trust
Maintenance Signals
Community Trust
Módulo PagSeguro Alternatives
PagBank for WooCommerce
pagbank-for-woocommerce
Aceite pagamentos via cartão de crédito, boleto e Pix no checkout do WooCommerce através do PagBank.
PagSeguro International Payment Gateway for WooCommerce
pagseguro-internacional-payment-gateway-for-woocommerce
PagSeguro International Payment Gateway for WooCommerce allows merchants to accept over 140 Latin American payment methods directly on your website, t …
Claudio Sanches – PagSeguro for WooCommerce
woocommerce-pagseguro
Adds PagSeguro gateway to the WooCommerce plugin
PagBank / PagSeguro Connect para WooCommerce
pagbank-connect
PagBank com PIX, Cartão de Crédito, Boleto, Recorrência + Envio Fácil e com Menos Taxas no PagSeguro. Autenticação 3D: menos chargeback + aprovações.
Virtuaria PagBank / PagSeguro para Woocommerce
virtuaria-pagseguro
Crédito, Pix e Boleto na sua loja virtual. Mais segurança, menos chargebacks com 3DS. Descontos nas taxas do PagBank.
Módulo PagSeguro Developer Profile
2 plugins · 5K total installs
How We Detect Módulo PagSeguro
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-pagseguro-rm/assets/css/frontend/transparent-checkout.css/wp-content/plugins/woo-pagseguro-rm/assets/css/frontend/transparent-checkout.min.css/wp-content/plugins/woo-pagseguro-rm/assets/js/frontend/transparent-checkout.js/wp-content/plugins/woo-pagseguro-rm/assets/js/frontend/transparent-checkout.min.jswoo-pagseguro-rm/assets/css/frontend/transparent-checkout.css?ver=woo-pagseguro-rm/assets/js/frontend/transparent-checkout.js?ver=HTML / DOM Fingerprints
pagseguro-transparent-checkoutdata-pagseguro-transparent-checkoutPagSeguroDirectPayment/wp-json/woo-pagseguro-rm/v1/create-payment