Wallet & Cashback Plugin for WooCommerce Security & Risk Analysis

wordpress.org/plugins/advanced-wallet-for-woocommerce

WooCommerce Wallet & Cashback Plugin is a powerful plugin that allows you to create a wallet system for your WooCommerce store.

0 active installs v1.0.22 PHP 7.2+ WP 5.0+ Updated Mar 13, 2026
cashbackdigital-walletpartial-paymentwoocommerce-wallet
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Wallet & Cashback Plugin for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Wallet & Cashback Plugin for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 21d ago
Risk Assessment

The "advanced-wallet-for-woocommerce" plugin, version 1.0.22, demonstrates a generally strong security posture based on the provided static analysis. The plugin has no recorded vulnerabilities (CVEs) and exhibits good coding practices like a high percentage of prepared SQL statements and properly escaped output. The attack surface is limited, with all identified entry points (AJAX handlers) appearing to have authentication checks. Furthermore, the absence of critical or high severity taint flows is a positive indicator of secure code design.

Despite the positive findings, there are a few areas that warrant attention. The presence of three flows with unsanitized paths, even if not categorized as critical or high severity in the taint analysis, represents a potential risk. These could be vectors for unexpected behavior or could become exploitable with future modifications or in conjunction with other factors. The external HTTP request, while only one, also introduces a dependency on external services, which can sometimes be a point of attack or failure.

Overall, the plugin's security history and adherence to many security best practices are commendable. The lack of historical vulnerabilities is a significant strength. However, the identified unsanitized paths, even at a lower severity, and the single external HTTP request are minor concerns that should ideally be addressed to further harden the plugin's security.

Key Concerns

  • Flows with unsanitized paths
  • External HTTP requests present
Vulnerabilities
None known

Wallet & Cashback Plugin for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Wallet & Cashback Plugin for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
37 prepared
Unescaped Output
11
476 escaped
Nonce Checks
11
Capability Checks
8
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

95% prepared39 total queries

Output Escaping

98% escaped487 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

8 flows3 with unsanitized paths
tab_content (admin\View_Transactions.php:66)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Wallet & Cashback Plugin for WooCommerce Attack Surface

Entry Points5
Unprotected0

AJAX Handlers 5

authwp_ajax_pisol_aww_search_usersadmin\View_Transactions.php:40
authwp_ajax_pisol_aww_soft_delete_transactionadmin\View_Transactions.php:42
authwp_ajax_aww_wallet_refundadmin\Wallet_Refund.php:20
authwp_ajax_pisol_update_wallet_statepublic\Wallet_Checkout.php:72
noprivwp_ajax_pisol_update_wallet_statepublic\Wallet_Checkout.php:73
WordPress Hooks 75
actionadmin_enqueue_scriptsadmin\Admin_Bootstrap.php:50
actionadmin_enqueue_scriptsadmin\Analytics.php:34
actionadmin_footer-plugins.phpadmin\Analytics.php:35
actionadmin_noticesadmin\Analytics.php:38
actionpisol_custom_field_aww_gateway_feesadmin\CustomFields.php:42
actionadmin_footeradmin\FormGenerator.php:446
actionadmin_menuadmin\Menu.php:22
actionadmin_initadmin\Option.php:31
actionadmin_initadmin\Option.php:32
actionwoocommerce_product_options_general_product_dataadmin\Product_Cashback_Fields.php:19
actionwoocommerce_process_product_metaadmin\Product_Cashback_Fields.php:20
actionwoocommerce_product_after_variable_attributesadmin\Product_Cashback_Fields.php:23
actionwoocommerce_save_product_variationadmin\Product_Cashback_Fields.php:24
actionproduct_cat_add_form_fieldsadmin\Product_Cashback_Fields.php:27
actionproduct_cat_edit_form_fieldsadmin\Product_Cashback_Fields.php:28
actioncreated_product_catadmin\Product_Cashback_Fields.php:29
actionedited_product_catadmin\Product_Cashback_Fields.php:30
actionadmin_noticesadmin\Review.php:109
actionshow_user_profileadmin\User_Profile.php:42
actionedit_user_profileadmin\User_Profile.php:43
actionpersonal_options_updateadmin\User_Profile.php:46
actionedit_user_profile_updateadmin\User_Profile.php:47
actionadmin_enqueue_scriptsadmin\User_Profile.php:50
actionadmin_noticesadmin\User_Profile.php:271
actionadmin_noticesadmin\User_Profile.php:288
actionedit_form_after_editoradmin\Wallet_Coupon.php:20
actionwoocommerce_coupon_options_saveadmin\Wallet_Coupon.php:25
actionadmin_enqueue_scriptsadmin\Wallet_Refund.php:19
actionadmin_noticesadvanced-wallet-for-woocommerce.php:24
actionbefore_woocommerce_initadvanced-wallet-for-woocommerce.php:46
actionadmin_initadvanced-wallet-for-woocommerce.php:74
actionwoocommerce_order_status_changedclasses\Cashback.php:49
actionplugins_loadedclasses\Database_Manager.php:54
actionadmin_initclasses\Install.php:17
actionuser_registerclasses\Registration_Reward.php:47
actionwp_set_comment_statusclasses\Review_Reward.php:47
actioncomment_postclasses\Review_Reward.php:49
filterwoocommerce_coupon_get_discount_amountclasses\Wallet_Coupon.php:18
filterwoocommerce_cart_totals_coupon_htmlclasses\Wallet_Coupon.php:20
actionwoocommerce_checkout_create_order_coupon_itemclasses\Wallet_Coupon.php:22
actionwoocommerce_order_status_changedclasses\Wallet_Coupon.php:24
actionwp_loadedpublic\Add_Fund.php:25
filterwoocommerce_is_purchasablepublic\Add_Fund.php:27
actionwoocommerce_before_calculate_totalspublic\Add_Fund.php:29
actionwoocommerce_add_to_cartpublic\Add_Fund.php:32
actionwoocommerce_cart_calculate_feespublic\Add_Fund.php:38
actionwoocommerce_blocks_loadedpublic\Block_Integration.php:20
actionwp_enqueue_scriptspublic\Block_Integration.php:21
actionwoocommerce_review_order_after_order_totalpublic\Cashback_Display.php:28
actionwoocommerce_cart_totals_after_order_totalpublic\Cashback_Display.php:29
filterwoocommerce_get_order_item_totalspublic\Cashback_Display.php:32
actioninitpublic\Front_Bootstrap.php:21
filterwoocommerce_payment_gatewayspublic\Front_Bootstrap.php:24
actionwoocommerce_blocks_payment_method_type_registrationpublic\Front_Bootstrap.php:26
actionwp_enqueue_scriptspublic\Front_Bootstrap.php:30
actionwoocommerce_blocks_loadedpublic\Wallet_Block.php:30
actionwp_enqueue_scriptspublic\Wallet_Block.php:31
actionwoocommerce_review_order_before_paymentpublic\Wallet_Checkout.php:42
actionwoocommerce_checkout_processpublic\Wallet_Checkout.php:45
actionwoocommerce_cart_calculate_feespublic\Wallet_Checkout.php:48
actionwoocommerce_checkout_update_order_metapublic\Wallet_Checkout.php:51
actionwoocommerce_store_api_checkout_update_order_from_requestpublic\Wallet_Checkout.php:52
actionwoocommerce_checkout_order_processedpublic\Wallet_Checkout.php:55
actionwoocommerce_store_api_checkout_order_processedpublic\Wallet_Checkout.php:57
filterpisol_aww_user_has_sufficient_balancepublic\Wallet_Checkout.php:60
actionwp_enqueue_scriptspublic\Wallet_Checkout.php:63
actionwoocommerce_after_checkout_formpublic\Wallet_Checkout.php:66
actionwoocommerce_checkout_update_order_reviewpublic\Wallet_Checkout.php:69
actioninitpublic\Wallet_Checkout.php:76
actionwoocommerce_email_before_order_tablepublic\Wallet_Gateway.php:46
actionwoocommerce_payment_complete_order_statuspublic\Wallet_Gateway.php:49
actioninitpublic\Wallet_Transactions.php:42
filterwoocommerce_account_menu_itemspublic\Wallet_Transactions.php:45
actionwoocommerce_account_wallet_endpointpublic\Wallet_Transactions.php:48
actionwp_enqueue_scriptspublic\Wallet_Transactions.php:51
Maintenance & Trust

Wallet & Cashback Plugin for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 13, 2026
PHP min version7.2
Downloads1K

Community Trust

Rating20/100
Number of ratings1
Active installs0
Developer Profile

Wallet & Cashback Plugin for WooCommerce Developer Profile

PI Web Solution

30 plugins · 93K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
235 days
View full developer profile
Detection Fingerprints

How We Detect Wallet & Cashback Plugin for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-wallet-for-woocommerce/assets/css/admin.css/wp-content/plugins/advanced-wallet-for-woocommerce/assets/css/woocommerce.css/wp-content/plugins/advanced-wallet-for-woocommerce/assets/js/frontend.js/wp-content/plugins/advanced-wallet-for-woocommerce/assets/js/backend.js
Version Parameters
advanced-wallet-for-woocommerce/assets/css/admin.css?ver=advanced-wallet-for-woocommerce/assets/css/woocommerce.css?ver=advanced-wallet-for-woocommerce/assets/js/frontend.js?ver=advanced-wallet-for-woocommerce/assets/js/backend.js?ver=

HTML / DOM Fingerprints

CSS Classes
pisol-aww-settings-wrappisol-aww-backend-wrappisol-aww-frontend-wrappisol-aww-wallet-balancepisol-aww-add-to-wallet
Data Attributes
data-aww-settings
JS Globals
pisol_aww_frontend_paramspisol_aww_backend_paramsPISOL_AWW_VERSIONPISOL_AWW_FOLDER_URLPISOL_AWW_FOLDER_PATHPISOL_AWW_FOLDER_NAME+4 more
REST Endpoints
/wp-json/pisol-aww/v1/update-wallet-balance/wp-json/pisol-aww/v1/get-wallet-balance
FAQ

Frequently Asked Questions about Wallet & Cashback Plugin for WooCommerce