
3D Scan & Show: Product Viewer Security & Risk Analysis
wordpress.org/plugins/3d-scan-and-showShow your products and spaces in 3D. No code needed.
Is 3D Scan & Show: Product Viewer Safe to Use in 2026?
Generally Safe
Score 100/1003D Scan & Show: Product Viewer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin '3d-scan-and-show' version 0.6.0 exhibits a mixed security posture. On the positive side, there are no recorded vulnerabilities (CVEs) in its history, and the static analysis reveals no dangerous functions, critical or high severity taint flows, and a high percentage of properly escaped output. This suggests a level of developer awareness regarding common web vulnerabilities. However, significant concerns arise from the substantial attack surface exposed without adequate permission checks. Specifically, 12 out of 18 REST API routes lack permission callbacks, presenting a clear opportunity for unauthorized access or data manipulation if these endpoints handle sensitive operations or data. The absence of nonce checks on AJAX handlers, while there are no AJAX handlers in this version, is a potential future risk if AJAX functionality is added later without proper security. The 2 file operations and 12 external HTTP requests also warrant careful scrutiny in a deeper audit to ensure they are handled securely and do not introduce additional vulnerabilities.
Key Concerns
- REST API routes without permission callbacks
- Lack of nonce checks on AJAX handlers
- SQL queries not using prepared statements
- File operations present
- External HTTP requests present
3D Scan & Show: Product Viewer Security Vulnerabilities
3D Scan & Show: Product Viewer Code Analysis
SQL Query Safety
Output Escaping
3D Scan & Show: Product Viewer Attack Surface
REST API Routes 18
WordPress Hooks 10
Maintenance & Trust
3D Scan & Show: Product Viewer Maintenance & Trust
Maintenance Signals
Community Trust
3D Scan & Show: Product Viewer Alternatives
3D Viewer – Display Interactive 3D Models
3d-viewer
3D Viewer lets you embed interactive 3D models and 360 product views on WordPress sites with support for GLB, GLTF, OBJ, STL, FBX, DAE, and BIM.
Easy 3d Model Viewer
easy-3d-model-viewer
Interactive 3D model viewer with hotspots/markers, tooltips, animations, environment maps and realistic lighting.
3D Product Viewer & WebAR for WooCommerce
wc-product-3d-viewer
The Viraview plugin allows your Woocommerce powered webshop to display your products in 3D & WebAR for PC, Android and Apple.
Emb3D Model Viewer
emb3d-model-viewer
A 3D model viewer for Elementor and WooCommerce
Kento 3D Model Viewer
kento-3d-model-viewer
Display 3D model on wordPress page, post, or custom page, 3D model rotate, zooming enabled.
3D Scan & Show: Product Viewer Developer Profile
1 plugin · 0 total installs
How We Detect 3D Scan & Show: Product Viewer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/3d-scan-and-show/admin/css/menu-icon.css/wp-content/plugins/3d-scan-and-show/admin/js/menu-icon.js/wp-content/plugins/3d-scan-and-show/assets/favicon.svg/wp-content/plugins/3d-scan-and-show/admin/css/shared.css/wp-content/plugins/3d-scan-and-show/admin/css/dashboard.css/wp-content/plugins/3d-scan-and-show/admin/css/settings.css/wp-content/plugins/3d-scan-and-show/admin/css/landing.css/wp-content/plugins/3d-scan-and-show/admin/css/contact.css+2 more/wp-content/plugins/3d-scan-and-show/admin/js/menu-icon.js/wp-content/plugins/3d-scan-and-show/build/index.js3d-scan-and-show/admin/css/menu-icon.css?ver=3d-scan-and-show/admin/js/menu-icon.js?ver=3d-scan-and-show/admin/css/shared.css?ver=3d-scan-and-show/admin/css/dashboard.css?ver=3d-scan-and-show/admin/css/settings.css?ver=3d-scan-and-show/admin/css/landing.css?ver=3d-scan-and-show/admin/css/contact.css?ver=3d-scan-and-show/build/index.js?ver=3d-scan-and-show/build/style.css?ver=HTML / DOM Fingerprints
scanshow-menu-iconscanshow-sharedscanshow-dashboardscanshow-settingsscanshow-landingscanshow-contactdata-block="scan-the-world/3d-scan-and-show-viewer"scanshowMenuIconScanShowAdmin/wp-json/scan-show/v1[scan_show_product_viewer]