
AR Model Viewer for WooCommerce Security & Risk Analysis
wordpress.org/plugins/ar-model-viewer-for-woocommerceThe AR Model Viewer for WooCommerce plugin shows 3D models on your website and in augmented reality. Supports .glb and .gltf files.
Is AR Model Viewer for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100AR Model Viewer for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ar-model-viewer-for-woocommerce" plugin v2.0.3 exhibits a concerning security posture due to a significant number of unprotected AJAX handlers, representing a substantial attack surface. While the plugin demonstrates good practices in other areas, such as the absence of dangerous functions and the exclusive use of prepared statements for SQL queries, the lack of authentication on all identified AJAX entry points is a critical weakness.
Taint analysis revealed flows with unsanitized paths, although no critical or high severity issues were flagged. This suggests a potential for issues related to path manipulation, but the lack of concrete exploitability data or past vulnerabilities makes it difficult to assess the immediate threat level. The complete absence of recorded vulnerabilities in its history is a positive sign, implying a history of responsible development or a lack of past scrutiny. However, this should not overshadow the identified weaknesses in the current version.
Overall, the plugin has strengths in its SQL handling and output escaping, but the unprotected AJAX endpoints present a clear and present risk. The presence of unsanitized paths, even without immediate critical severity, warrants caution. A balanced view indicates a plugin with potential for improvement in its access control mechanisms to mitigate risks associated with its attack surface.
Key Concerns
- Unprotected AJAX handlers
- Flows with unsanitized paths
- Bundled Freemius v1.0
AR Model Viewer for WooCommerce Security Vulnerabilities
AR Model Viewer for WooCommerce Release Timeline
AR Model Viewer for WooCommerce Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
AR Model Viewer for WooCommerce Attack Surface
AJAX Handlers 8
WordPress Hooks 19
Maintenance & Trust
AR Model Viewer for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
AR Model Viewer for WooCommerce Alternatives
AR for WooCommerce
ar-for-woocommerce
Augmented Reality for WooCommerce plugin lets you display 3D models and AR products directly in your store with no app required.
3D Viewer – 3D Model Viewer – Augmented Reality
ar-vr-3d-model-try-on
Display 3D models on WordPress & WooCommerce with built-in AR for iOS & Android. Unlimited uploads, no app needed. Gutenberg block included.
AR for WordPress
ar-for-wordpress
Augmented Reality for WordPress lets you showcase 3D models in an interactive viewer and AR on iOS and Android, with no app downloads needed.
PausAR – 3D and AR for Elementor
pausar-3d-ar-for-elementor
PausAR is a user-friendly and web-based 3D & augmented reality viewer that can be easily integrated into any Elementor powered WordPress website.
SwiftXR (3D/AR/VR) Viewer
swiftxr-3darvr-viewer
Easily enhance customer engagement with immersive 3D, AR, and VR experiences
AR Model Viewer for WooCommerce Developer Profile
8 plugins · 190 total installs
How We Detect AR Model Viewer for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ar-model-viewer-for-woocommerce/assets/css/ar-model-viewer-for-woocommerce.css/wp-content/plugins/ar-model-viewer-for-woocommerce/assets/js/ar-model-viewer-for-woocommerce.js/wp-content/plugins/ar-model-viewer-for-woocommerce/vendor/freemius/wordpress-sdk/Freemius/Assets/css/sdk-styles.css/wp-content/plugins/ar-model-viewer-for-woocommerce/vendor/freemius/wordpress-sdk/start.php/wp-content/plugins/ar-model-viewer-for-woocommerce/includes/class-ar-model-viewer-for-woocommerce-activator.php/wp-content/plugins/ar-model-viewer-for-woocommerce/includes/class-ar-model-viewer-for-woocommerce-deactivator.php/wp-content/plugins/ar-model-viewer-for-woocommerce/includes/class-ar-model-viewer-for-woocommerce.phpar-model-viewer-for-woocommerce/assets/css/ar-model-viewer-for-woocommerce.css?ver=ar-model-viewer-for-woocommerce/assets/js/ar-model-viewer-for-woocommerce.js?ver=ar-model-viewer-for-woocommerce/vendor/freemius/wordpress-sdk/Freemius/Assets/css/sdk-styles.css?ver=HTML / DOM Fingerprints
ar-model-viewer-productsdata-ar-model-viewer-productsar_model_viewer_for_woocommerce_fs[ar_model_viewer_products]