
AICOSO Wishlist for WooCommerce Security & Risk Analysis
wordpress.org/plugins/aicoso-wishlist-for-woocommerceComprehensive wishlist solution for WooCommerce with AI-powered recommendations, social sharing, and advanced analytics.
Is AICOSO Wishlist for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100AICOSO Wishlist for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The aicoso-wishlist-for-woocommerce plugin v1.0.0 presents a mixed security posture. While the plugin demonstrates good practices in SQL query preparation and output escaping, with high percentages of both, significant concerns arise from its attack surface and taint analysis. The presence of 11 AJAX handlers, with a notable 5 lacking authentication checks, creates a substantial entry point for potential unauthorized actions. Furthermore, the taint analysis reveals 17 flows with unsanitized paths, 14 of which are categorized as high severity, indicating a strong likelihood of vulnerabilities related to input validation and data handling within these flows. The absence of any recorded vulnerability history is a positive indicator of past security diligence, but it does not mitigate the risks identified in the current static analysis. The plugin's strengths lie in its robust handling of SQL and output, but the critical findings in AJAX security and taint analysis, particularly the high number of unsanitized paths, demand immediate attention. The lack of authentication on a significant portion of AJAX handlers is a particularly concerning weakness that could be exploited.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
AICOSO Wishlist for WooCommerce Security Vulnerabilities
AICOSO Wishlist for WooCommerce Release Timeline
AICOSO Wishlist for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
AICOSO Wishlist for WooCommerce Attack Surface
AJAX Handlers 11
WordPress Hooks 59
Scheduled Events 3
Maintenance & Trust
AICOSO Wishlist for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
AICOSO Wishlist for WooCommerce Alternatives
Velocity Wishlist – WooCommerce Wishlist Plugin
velocity-wishlist
Powerful, lightweight wishlist functionality for WooCommerce. Supports guest users, product variations, social sharing, and fully customizable buttons …
Addonify – WooCommerce Wishlist
addonify-wishlist
Addonify WooCommerce Wishlist is a light-weight yet powerful tool that adds a wishlist functionality to your e-commerce shop.
WPMozo Wishlist Lite for WooCommerce
wpmozo-wishlist-lite-for-woocommerce
WPMozo Wishlist Lite for WooCommerce adds a wishlist feature to your WooCommerce store, allowing customers to save their favorite products for future …
BizzWishlist – WooCommerce Wishlist
bizzwishlist
A lightweight and powerful WooCommerce Wishlist addon. Allow customers to save their favorite products and purchase them later.
QODE Wishlist for WooCommerce
qode-wishlist-for-woocommerce
Qode Wishlist for WooCommerce plugin is the ideal toolkit for letting your visitors save & share comprehensive lists with their products of interest.
AICOSO Wishlist for WooCommerce Developer Profile
5 plugins · 20 total installs
How We Detect AICOSO Wishlist for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/aicoso-wishlist-for-woocommerce/assets/css/admin-style.css/wp-content/plugins/aicoso-wishlist-for-woocommerce/assets/css/frontend-style.css/wp-content/plugins/aicoso-wishlist-for-woocommerce/assets/js/admin-script.js/wp-content/plugins/aicoso-wishlist-for-woocommerce/assets/js/frontend-script.js/wp-content/plugins/aicoso-wishlist-for-woocommerce/admin/partials/css/all-wishlists.css/wp-content/plugins/aicoso-wishlist-for-woocommerce/admin/partials/css/analytics.css/wp-content/plugins/aicoso-wishlist-for-woocommerce/admin/partials/css/database-tools.css/wp-content/plugins/aicoso-wishlist-for-woocommerce/admin/partials/css/email-campaigns.css+6 more/wp-content/plugins/aicoso-wishlist-for-woocommerce/assets/js/frontend-script.jsaicoso-wishlist-for-woocommerce/assets/css/admin-style.css?ver=aicoso-wishlist-for-woocommerce/assets/css/frontend-style.css?ver=aicoso-wishlist-for-woocommerce/assets/js/admin-script.js?ver=aicoso-wishlist-for-woocommerce/assets/js/frontend-script.js?ver=aicoso-wishlist-for-woocommerce/admin/partials/css/all-wishlists.css?ver=aicoso-wishlist-for-woocommerce/admin/partials/css/analytics.css?ver=aicoso-wishlist-for-woocommerce/admin/partials/css/database-tools.css?ver=aicoso-wishlist-for-woocommerce/admin/partials/css/email-campaigns.css?ver=aicoso-wishlist-for-woocommerce/admin/partials/css/settings.css?ver=aicoso-wishlist-for-woocommerce/admin/partials/js/all-wishlists.js?ver=aicoso-wishlist-for-woocommerce/admin/partials/js/analytics.js?ver=aicoso-wishlist-for-woocommerce/admin/partials/js/database-tools.js?ver=aicoso-wishlist-for-woocommerce/admin/partials/js/email-campaigns.js?ver=aicoso-wishlist-for-woocommerce/admin/partials/js/settings.js?ver=HTML / DOM Fingerprints
aicoso-wishlist-wrapaicoso-wishlist-button-wrapperaicoso-wishlist-manage-wrapaicoso-wishlist-settings-wrapaicoso-wishlist-analytics-wrapaicoso-wishlist-email-campaigns-wrapaicoso-wishlist-add-to-wishlistaicoso-wishlist-remove-from-wishlist+3 more<!-- Aicoso Wishlist for WooCommerce --><!-- Start: Aicoso Wishlist Admin Dashboard --><!-- End: Aicoso Wishlist Admin Dashboard --><!-- Start: Aicoso Wishlist All Wishlists -->+7 moredata-product-iddata-wishlist-iddata-aicoso-wishlist-nonceaicosoWishlistFrontendaicosoWishlistAdmin/wp-json/aicoso-wishlist/v1/add/wp-json/aicoso-wishlist/v1/remove/wp-json/aicoso-wishlist/v1/get/wp-json/aicoso-wishlist/v1/update/wp-json/aicoso-wishlist/v1/delete/wp-json/aicoso-wishlist/v1/admin/create_tables/wp-json/aicoso-wishlist/v1/admin/bulk_action/wp-json/aicoso-wishlist/v1/admin/export_wishlists/wp-json/aicoso-wishlist/v1/admin/send_promotional_email/wp-json/aicoso-wishlist/v1/admin/export_analytics/wp-json/aicoso-wishlist/v1/admin/download_export