Pay with LINE Pay Security & Risk Analysis

wordpress.org/plugins/wpbr-linepay-tw

Accept payments via LINE Pay for your ecommerce store.

700 active installs v1.3.3 PHP 8.0+ WP 5.9+ Updated Nov 23, 2025
lineline-paypaymentpayment-gatewaywoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Pay with LINE Pay Safe to Use in 2026?

Generally Safe

Score 100/100

Pay with LINE Pay has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The wpbr-linepay-tw plugin v1.3.3 exhibits a generally good security posture based on the static analysis. The absence of dangerous functions, raw SQL queries, file operations, and a clean vulnerability history are positive indicators. The presence of a nonce check and a single external HTTP request are noted, but the lack of explicit capability checks on the AJAX handler is a point of concern, as is the percentage of output not properly escaped.

While the taint analysis found no issues, indicating no obvious unsanitized data flows, the limited attack surface (one AJAX handler) means a thorough analysis of that single entry point is crucial. The 75% output escaping rate suggests that a portion of the plugin's output might be vulnerable to cross-site scripting (XSS) if the unescaped data originates from user input or untrusted sources. The absence of recorded vulnerabilities is encouraging but should not be interpreted as a guarantee of absolute security, especially given the potential for XSS.

In conclusion, the plugin demonstrates strengths in its avoidance of common risky practices like raw SQL and dangerous functions. However, the lack of capability checks on its sole AJAX entry point and the unescaped output represent areas that require attention to improve its overall security. The plugin's history of no vulnerabilities is a positive sign, but ongoing vigilance is always recommended.

Key Concerns

  • AJAX handler lacks capability checks
  • 25% of output not properly escaped
Vulnerabilities
None known

Pay with LINE Pay Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Pay with LINE Pay Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
15 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

75% escaped20 total outputs
Attack Surface

Pay with LINE Pay Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_linepay_confirmincludes\class-wpbr-linepay-tw.php:140
WordPress Hooks 15
actionadd_meta_boxesincludes\admin\meta-boxes\class-linepay-tw-order-meta-boxes.php:33
filterwoocommerce_get_settings_pagesincludes\class-wpbr-linepay-tw.php:135
filterwoocommerce_payment_gatewaysincludes\class-wpbr-linepay-tw.php:136
actionwp_enqueue_scriptsincludes\class-wpbr-linepay-tw.php:137
actionadmin_enqueue_scriptsincludes\class-wpbr-linepay-tw.php:138
filterwoocommerce_thankyou_order_received_textincludes\gateways\class-linepay-tw-payment.php:71
actionwoocommerce_order_details_before_order_tableincludes\gateways\class-linepay-tw-payment.php:72
actionlinepay_process_confirm_failedincludes\gateways\class-linepay-tw-request.php:30
actionwoocommerce_api_linepay_paymentincludes\gateways\class-linepay-tw-response.php:32
actionbefore_woocommerce_initwpbr-linepay-tw.php:59
actionwoocommerce_blocks_loadedwpbr-linepay-tw.php:66
actionwoocommerce_blocks_payment_method_type_registrationwpbr-linepay-tw.php:75
actionadmin_noticeswpbr-linepay-tw.php:95
actionadmin_noticeswpbr-linepay-tw.php:107
actionplugins_loadedwpbr-linepay-tw.php:116
Maintenance & Trust

Pay with LINE Pay Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 23, 2025
PHP min version8.0
Downloads7K

Community Trust

Rating100/100
Number of ratings3
Active installs700
Developer Profile

Pay with LINE Pay Developer Profile

WPBrewer

2 plugins · 1K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pay with LINE Pay

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wpbr-linepay-tw/assets/css/wpbr-linepay-tw.css/wp-content/plugins/wpbr-linepay-tw/assets/js/wpbr-linepay-tw.js
Script Paths
/wp-content/plugins/wpbr-linepay-tw/assets/js/wpbr-linepay-tw.js
Version Parameters
wpbr-linepay-tw/assets/css/wpbr-linepay-tw.css?ver=wpbr-linepay-tw/assets/js/wpbr-linepay-tw.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-plugin-name="wpbr-linepay-tw"data-version="1.3.3"
JS Globals
window.wpbr_linepay_tw_params
FAQ

Frequently Asked Questions about Pay with LINE Pay