
Additional Order Filters for WooCommerce Security & Risk Analysis
wordpress.org/plugins/additional-order-filters-for-woocommerceDo you have a large WooCommerce store with hunderd or thousands orders? Then this plugin created for you.
Is Additional Order Filters for WooCommerce Safe to Use in 2026?
Generally Safe
Score 97/100Additional Order Filters for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin "additional-order-filters-for-woocommerce" v1.24 exhibits a mixed security posture. While it boasts zero identified AJAX handlers, REST API routes, shortcodes, or cron events, contributing to a small attack surface, several concerning code signals are present. The use of `unserialize` is a significant risk, especially when dealing with user-supplied data, as it can lead to object injection vulnerabilities. The fact that 100% of SQL queries are not using prepared statements is a critical flaw, opening the door for SQL injection attacks. Despite a high percentage of properly escaped output, the presence of unsanitized paths in taint analysis indicates potential for vulnerabilities if these paths are exposed to user input. The plugin's vulnerability history, with 3 medium-severity CVEs related to CSRF and XSS, suggests a recurring pattern of input sanitization and authorization weaknesses. Although no CVEs are currently unpatched, the past issues combined with the static analysis findings warrant caution.
Key Concerns
- Use of unserialize function
- SQL queries without prepared statements
- Flows with unsanitized paths
- Medium severity CVEs in history
Additional Order Filters for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Additional Order Filters for WooCommerce <= 1.22 - Cross-Site Request Forgery
Additional Order Filters for WooCommerce <= 1.21 - Reflected Cross-Site Scripting
Additional Order Filters for WooCommerce <= 1.11 - Reflected Cross-Site Scripting
Additional Order Filters for WooCommerce Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Additional Order Filters for WooCommerce Attack Surface
WordPress Hooks 15
Maintenance & Trust
Additional Order Filters for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Additional Order Filters for WooCommerce Alternatives
Order Export & Order Import for WooCommerce
order-import-export-for-woocommerce
The best order export import plugin for WooCommerce. Easily import and export WooCommerce orders and WooCommerce coupons using CSV.
Advanced AJAX Product Filters
woocommerce-ajax-filters
Fast and flexible AJAX product filters for WooCommerce. Filter by categories, attributes, price, tags, rating, and more. No page reloads.
Customizer for WooCommerce
woocommerce-customizer
Helps you customize WooCommerce without writing any code!
Smart Manager – Advanced WooCommerce Bulk Edit & Inventory Management
smart-manager-for-wp-e-commerce
WooCommerce Advanced Bulk Edit products, orders, & posts in an Excel-like sheet editor. Get advanced WooCommerce stock, pricing, & order management.
Orders Tracking for WooCommerce
woo-orders-tracking
Easily import/manage your tracking numbers, add tracking numbers to PayPal and send email notifications to customers.
Additional Order Filters for WooCommerce Developer Profile
1 plugin · 2K total installs
How We Detect Additional Order Filters for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/additional-order-filters-for-woocommerce/assets/css/woaf-admin.css/wp-content/plugins/additional-order-filters-for-woocommerce/assets/js/woaf-admin-filters.js/wp-content/plugins/additional-order-filters-for-woocommerce/assets/js/woaf-admin-options.jshttps://cdn.jsdelivr.net/npm/select2@4.1.0-rc.0/dist/js/select2.min.jsHTML / DOM Fingerprints
woaf_show_filters_button_wrapperwoaf_show_filterswoaf_special_order_filter_wrapperwoaf_special_order_filterinline_blockwoaf_admin_scriptswoaf_admin_options_scriptswoaf_select2_script