
Smart Related Products – AI-Inspired Recommendations for WooCommerce Security & Risk Analysis
wordpress.org/plugins/ai-related-productsShow the right products to the right customers. A smart WooCommerce add-on for personalized product recommendations.
Is Smart Related Products – AI-Inspired Recommendations for WooCommerce Safe to Use in 2026?
Mostly Safe
Score 78/100Smart Related Products – AI-Inspired Recommendations for WooCommerce is generally safe to use. 1 past CVE were resolved.
The "ai-related-products" plugin v2.0.8 exhibits a mixed security posture. While it demonstrates good practices by utilizing prepared statements for all SQL queries and a high percentage of properly escaped outputs, several concerning factors warrant attention. The absence of nonce checks and capability checks on its entry points, particularly its single shortcode, is a significant weakness. This means that any authenticated user could potentially trigger the functionality associated with this shortcode without proper authorization checks, opening the door for various attacks if the shortcode's output or functionality is not strictly controlled.
The vulnerability history reveals a pattern of past security issues, specifically cross-site scripting (XSS) vulnerabilities. The presence of a currently unpatched medium-severity vulnerability from late 2025 is a critical concern. This indicates that the plugin's developers may not be consistently addressing security flaws promptly, or that users are not updating to patched versions. While the static analysis didn't reveal new critical taint flows or dangerous functions in this version, the historical pattern coupled with the lack of authorization checks on the shortcode suggests a potential for future vulnerabilities, especially if the shortcode handles user-supplied data.
In conclusion, the plugin has strengths in its database query handling and output sanitization. However, the lack of robust authorization checks on its entry points and the unpatched historical vulnerability significantly detract from its overall security. Users should exercise caution and prioritize updating to a version that addresses the known CVE. The development team should implement nonce and capability checks for all entry points and ensure timely patching of all security vulnerabilities.
Key Concerns
- Unpatched CVE (medium severity)
- Missing nonce checks on entry points
- Missing capability checks on entry points
- High percentage of outputs not properly escaped
Smart Related Products – AI-Inspired Recommendations for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Smart Related Products <= 2.0.6 - Authenticated (Administrator+) Stored Cross-Site Scripting
Smart Related Products – AI-Inspired Recommendations for WooCommerce Release Timeline
Smart Related Products – AI-Inspired Recommendations for WooCommerce Code Analysis
Output Escaping
Smart Related Products – AI-Inspired Recommendations for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 22
Maintenance & Trust
Smart Related Products – AI-Inspired Recommendations for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Smart Related Products – AI-Inspired Recommendations for WooCommerce Alternatives
UpsellWP – WooCommerce Upsell and Related Products Offers
checkout-upsell-and-order-bumps
Best WooCommerce Upsell plugin to create checkout upsells, cross-sells, order bumps and frequently bought together bundles to increase AOV.
Leo Product Recommendations for WooCommerce
leo-product-recommendations
Boost WooCommerce sales with smart product recommendation popups on add to cart.
Easy Upsells, Related Products & Product Recommendations for WooCommerce
easy-upsells-for-woocommerce
Boost sales and increase average order value with WooCommerce upsells, related products, product recommendations, product addons, cross-sells.
Thank you product recommendations for WooCommerce
thank-you-product-recommendations-for-woocommerce
Boost post-purchase engagement by displaying related products on the WooCommerce Thank You and View Order pages.
CartFlows – Funnel Builder & Checkout Plugin for WooCommerce
cartflows
1 WordPress funnel builder & WooCommerce checkout plugin. Boost AOV with one-click upsells, order bumps & high-converting checkout pages.
Smart Related Products – AI-Inspired Recommendations for WooCommerce Developer Profile
27 plugins · 5K total installs
How We Detect Smart Related Products – AI-Inspired Recommendations for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ai-related-products/assets/css/style.css/wp-content/plugins/ai-related-products/assets/css/admin.cssai-related-products/assets/css/style.css?ver=ai-related-products/assets/css/admin.css?ver=HTML / DOM Fingerprints
st_woo_ai_rel_productsai-related-products-containerSmart Related Products ShortcodeDefault shortcode:Shortcode with atts:no of columns layout+3 moredata-columndata-cart_refdata-no_of_productsdata-sort[ST_WOO_AI_REL_PRODUCTS][ST_WOO_AI_REL_PRODUCTS column="3" cart_ref="true" no_of_products="6" orderby="date"]