
Payrexx Payment Gateway for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woo-payrexx-gatewayThe Payrexx payment gateway for WooCommerce is a simple method to integrate all payment providers and payment methods with one single payment plugin.
Is Payrexx Payment Gateway for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100Payrexx Payment Gateway for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The "woo-payrexx-gateway" plugin v3.1.16 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL injection vulnerabilities, file operations, and external HTTP requests is commendable. Furthermore, the high percentage of properly escaped output and the use of prepared statements for all SQL queries indicate good coding practices for preventing common web vulnerabilities. The presence of nonce checks on entry points also contributes positively to its security.
However, a key area of concern is the lack of capability checks on any of the identified entry points. While there are no unprotected AJAX handlers or REST API routes, this absence of permission checks means that any authenticated user, regardless of their role or permissions, could potentially trigger these functionalities. This could lead to privilege escalation or unauthorized actions if the handlers are not inherently secure against malicious input from any user.
The vulnerability history, while showing only one medium severity CVE in the past, is less reassuring due to the recency of the last recorded vulnerability. The fact that the only known vulnerability type was "Missing Authorization" aligns with the static analysis findings of no capability checks. While the plugin currently has no unpatched vulnerabilities, the historical pattern suggests a recurring theme of authorization bypass as a potential weakness that needs continuous vigilance.
Key Concerns
- No capability checks on entry points
- One past medium severity CVE
Payrexx Payment Gateway for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Payrexx Payment Gateway for WooCommerce <= 3.1.5 - Missing Authorization
Payrexx Payment Gateway for WooCommerce Code Analysis
Output Escaping
Data Flow Analysis
Payrexx Payment Gateway for WooCommerce Attack Surface
AJAX Handlers 2
WordPress Hooks 16
Scheduled Events 1
Maintenance & Trust
Payrexx Payment Gateway for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Payrexx Payment Gateway for WooCommerce Alternatives
Pay Advantage
pay-advantage
Instantly accept Visa, Mastercard and American Express from your site with fast settlement to any Australian bank account.
Live eftpos for WooCommerce
live-eftpos-for-woocommerce
The Live eftpos for WooCommerce plugin is the easy way to manage card payments via your online store.
iCard Checkout for WooCommerce
icard-checkout-for-woocommerce
A one-click checkout with a full range of payment services and regular settlement of funds
PayU GPO Payment for WooCommerce
woo-payu-payment-gateway
PayU fast online payments for WooCommerce. Banks, BLIK, credit or debit cards, Installments, Apple Pay, Google Pay.
Stripe Payment Forms by WP Full Pay – Accept Credit Card Payments, Donations & Subscriptions
wp-full-stripe-free
🚀 Create Stripe payment forms for WordPress. Accept credit cards, Apple Pay, donations, subscriptions & more. Easy setup, no coding needed!
Payrexx Payment Gateway for WooCommerce Developer Profile
1 plugin · 2K total installs
How We Detect Payrexx Payment Gateway for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-payrexx-gateway/assets/css/payrexx-styles.css/wp-content/plugins/woo-payrexx-gateway/assets/js/googlepay.js/wp-content/plugins/woo-payrexx-gateway/assets/js/applepay.jshttps://pay.google.com/gp/p/js/pay.jsHTML / DOM Fingerprints
data-payrexx-gatewaydata-payrexx-api-keydata-payrexx-public-keydata-payrexx-custom-fieldsdata-payrexx-prefilled-cardsdata-payrexx-show-success-screen+128 moreWC_Payrexx_GooglePayWC_Payrexx_ApplePay/wp-json/payrexx/v1/process-payment/wp-json/payrexx/v1/webhook