ALÔDev – Product Reorder by Category Security & Risk Analysis

wordpress.org/plugins/alodev-product-reorder-by-category

Reorder WooCommerce products by category using drag and drop.

0 active installs v1.2 PHP + WP 6.0+ Updated Sep 2, 2025
adminproductsreorderwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is ALÔDev – Product Reorder by Category Safe to Use in 2026?

Generally Safe

Score 100/100

ALÔDev – Product Reorder by Category has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The "alodev-product-reorder-by-category" v1.2 plugin exhibits a generally strong security posture based on the provided static analysis. It utilizes prepared statements for all SQL queries, implements nonce and capability checks on its entry points, and shows no signs of dangerous function usage, file operations, or external HTTP requests. The absence of known vulnerabilities in its history further reinforces this positive outlook, suggesting a mature and well-maintained codebase.

However, the analysis does highlight a concern regarding output escaping, with only 41% of outputs being properly escaped. This indicates a potential risk of cross-site scripting (XSS) vulnerabilities, particularly if user-supplied data is not adequately sanitized before being displayed. While the attack surface is small and all entry points have security checks, this partial output escaping remains the primary area of weakness identified in the code.

In conclusion, while the plugin benefits from good practices in secure coding standards like prepared statements and authorization checks, the incomplete output escaping warrants attention. The lack of historical vulnerabilities is a positive indicator, but it does not negate the potential risks presented by unescaped output. Addressing this area would significantly improve the plugin's overall security.

Key Concerns

  • Low percentage of properly escaped output
Vulnerabilities
None known

ALÔDev – Product Reorder by Category Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

ALÔDev – Product Reorder by Category Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
16
11 escaped
Nonce Checks
2
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

41% escaped27 total outputs
Attack Surface

ALÔDev – Product Reorder by Category Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_alodev_load_products_by_categoryalodev-product-reorder-by-category.php:143
authwp_ajax_alodev_save_product_orderalodev-product-reorder-by-category.php:167
WordPress Hooks 2
actionadmin_menualodev-product-reorder-by-category.php:27
actionadmin_enqueue_scriptsalodev-product-reorder-by-category.php:106
Maintenance & Trust

ALÔDev – Product Reorder by Category Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 2, 2025
PHP min version
Downloads271

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

ALÔDev – Product Reorder by Category Developer Profile

ALÔDev

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ALÔDev – Product Reorder by Category

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/alodev-product-reorder-by-category/assets/images/logo.png/wp-content/plugins/alodev-product-reorder-by-category/assets/css/admin-style.css/wp-content/plugins/alodev-product-reorder-by-category/assets/js/admin-script.js
Script Paths
/wp-content/plugins/alodev-product-reorder-by-category/assets/js/admin-script.js
Version Parameters
alodev-product-reorder-by-category/assets/css/admin-style.css?ver=1.0alodev-product-reorder-by-category/assets/js/admin-script.js?ver=1.0

HTML / DOM Fingerprints

CSS Classes
alodev-product-item
Data Attributes
data-id
JS Globals
alodev_dataalodev_reorder_products_nonce
REST Endpoints
/wp-json/alodev-product-reorder-by-category/
FAQ

Frequently Asked Questions about ALÔDev – Product Reorder by Category