
Advanced Product Wishlist for Woocommerce Security & Risk Analysis
wordpress.org/plugins/advanced-product-wishlist-for-wooAdvanced Product Wishlist add all Wishlist features to your website. Needs WooCommerce to work..
Is Advanced Product Wishlist for Woocommerce Safe to Use in 2026?
Generally Safe
Score 85/100Advanced Product Wishlist for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "advanced-product-wishlist-for-woo" plugin version 1.0.6 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and maintaining a strong output escaping rate of 85%. Furthermore, the absence of known CVEs and critical/high severity taint flows suggests a generally stable codebase. However, significant concerns arise from the attack surface. With 15 total entry points, 12 of which lack authentication checks (primarily AJAX handlers), the plugin presents a substantial target for unauthorized actions. While there are 7 nonce checks, this is insufficient given the number of unprotected entry points.
The lack of capability checks on a large portion of its entry points is a critical weakness. This means that any authenticated user, regardless of their role or permissions, could potentially trigger sensitive actions. The absence of recorded vulnerabilities in its history might indicate a lack of rigorous security auditing or that vulnerabilities have simply not been discovered or disclosed. In conclusion, while the plugin avoids common pitfalls like raw SQL and poor output escaping, the extensive unprotected attack surface is a major security concern that needs to be addressed.
Key Concerns
- Large attack surface without auth checks
- Missing capability checks on AJAX handlers
- Low number of nonce checks relative to entry points
Advanced Product Wishlist for Woocommerce Security Vulnerabilities
Advanced Product Wishlist for Woocommerce Code Analysis
Output Escaping
Data Flow Analysis
Advanced Product Wishlist for Woocommerce Attack Surface
AJAX Handlers 13
Shortcodes 2
WordPress Hooks 59
Maintenance & Trust
Advanced Product Wishlist for Woocommerce Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Product Wishlist for Woocommerce Alternatives
WCBoost – Wishlist
wcboost-wishlist
WCBoost - Wishlist lets shoppers create wishlists for later purchases, reminding them of desired items, driving repeat visits and boost sales.
Wishlist for WooCommerce
wt-woocommerce-wishlist
This WooCommerce wishlist plugin adds a wishlist feature to your WooCommerce store. Let the users easily add and manage products from their wishlist p …
Wishlist
wishlist
Add wishlist feature to your WooCommerce product or any post types.
Wishlist and Compare for WooCommerce
wishlist-and-compare
Enhance your WooCommerce store with our Wishlist & Compare Plugin. Let customers save favorite products and compare features for informed decisions.
PBO Move to Wishlist for YITH WooCommerce Wishlist
pbo-move-to-wishlist-for-yith-woocommerce-wishlist
PBO Move to Wishlist for YITH WooCommerce Wishlist is a simple solution for adding functionality called 'Move to Wishlist' to Shopping Cart.
Advanced Product Wishlist for Woocommerce Developer Profile
46 plugins · 21K total installs
How We Detect Advanced Product Wishlist for Woocommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-product-wishlist-for-woocomerce/css/advanced-product-wishlist-for-woocomerce-admin.css/wp-content/plugins/advanced-product-wishlist-for-woocomerce/js/advanced-product-wishlist-for-woocomerce-admin.jsadvanced-product-wishlist-for-woocomerce/css/advanced-product-wishlist-for-woocomerce-admin.css?ver=advanced-product-wishlist-for-woocomerce/js/advanced-product-wishlist-for-woocomerce-admin.js?ver=HTML / DOM Fingerprints
data-wishlist-iddata-product-idapww_object_admin/wp-json/apww/v1/update-wishlist/wp-json/apww/v1/delete-wishlist[apww_products_wishlist][apww_add_to_wishlist]