
WC Total Web Solutions Gateway Security & Risk Analysis
wordpress.org/plugins/woocommerce-total-web-solutions-gatewayTWS payment gateway for Woocommerce.
Is WC Total Web Solutions Gateway Safe to Use in 2026?
Generally Safe
Score 100/100WC Total Web Solutions Gateway has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "woocommerce-total-web-solutions-gateway" v2.3.2 reveals a plugin with a seemingly small attack surface. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, which reduces the potential entry points for attackers. The plugin also demonstrates good practices in its handling of SQL queries, with 100% using prepared statements, and no dangerous functions were detected. However, significant concerns arise from the taint analysis and output escaping. Four flows with unsanitized paths were identified, and while no critical or high severity issues were flagged in taint analysis, the presence of unsanitized paths warrants caution as it could indicate potential injection vulnerabilities. Furthermore, only 19% of output escaping was proper, suggesting a risk of cross-site scripting (XSS) vulnerabilities. The complete absence of nonce checks and capability checks on any potential entry points (though none were explicitly found in the static scan, the lack of checks is a systemic weakness) is a major concern for authentication and authorization. The plugin's vulnerability history is clean, with no known CVEs, which is a positive indicator. Overall, while the plugin avoids common pitfalls like raw SQL and dangerous functions, the identified unsanitized paths and poor output escaping, coupled with a lack of security checks, present a notable risk.
Key Concerns
- Unsanitized paths found in taint analysis
- Low percentage of properly escaped output
- No nonce checks detected
- No capability checks detected
WC Total Web Solutions Gateway Security Vulnerabilities
WC Total Web Solutions Gateway Code Analysis
Output Escaping
Data Flow Analysis
WC Total Web Solutions Gateway Attack Surface
WordPress Hooks 7
Maintenance & Trust
WC Total Web Solutions Gateway Maintenance & Trust
Maintenance Signals
Community Trust
WC Total Web Solutions Gateway Alternatives
Invoice Gateway for WooCommerce – Invoice Payment Gateway
invoice-gateway-for-woocommerce
Add a WooCommerce invoice gateway to your store. An easy invoicing payment gateway solution for WooCommerce.
PayPlus Payment Gateway
payplus-payment-gateway
Accept credit/debit card payments or other methods such as bit, Apple Pay, Google Pay in one page. Create digitally signed invoices & much more!
Helcim Commerce for WooCommerce
helcim-commerce-for-woocommerce
Helcim Payment Module for WooCommerce
Payment Gateway – 2Checkout for WooCommerce
woo-2checkout
2Checkout Payment Gateway for WooCommerce allow to accept online store payment from Paypal, Credit Card, MasterCard and more.
Wenprise Alipay Gateway For WooCommerce
wenprise-alipay-checkout-for-woocommerce
Alipay payment gateway for WooCommerce, WooCommerce 支付宝免费全功能支付网关。
WC Total Web Solutions Gateway Developer Profile
1 plugin · 10 total installs
How We Detect WC Total Web Solutions Gateway
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woocommerce-total-web-solutions-gateway/images/SupportedCardsMain.pngwoocommerce-total-web-solutions-gateway/includes/authorize-net.php?ver=woocommerce-total-web-solutions-gateway/gateway-totalweb.php?ver=HTML / DOM Fingerprints
name="tws_storecard"/wc-api/WC_Gateway_Totalweb