
Avalon23 Products Filter for WooCommerce Security & Risk Analysis
wordpress.org/plugins/avalon23-products-filter-for-woocommerceAvalon23 Products Filter – New generation of WooCommerce Products Filters for your ecommerce
Is Avalon23 Products Filter for WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100Avalon23 Products Filter for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Avalon23 Products Filter for WooCommerce plugin, version 1.1.6, exhibits a mixed security posture. While it demonstrates good practices in SQL query preparation and output escaping, with a high percentage of both, there are significant concerns regarding its attack surface and lack of authentication checks. A substantial number of AJAX handlers (36 out of 42) are exposed without any authentication or capability checks, creating a broad entry point for potential attacks. The presence of a single taint flow with an unsanitized path, categorized as high severity, is a critical finding that warrants immediate attention.
Despite the absence of known CVEs and historical vulnerabilities, the plugin's current static analysis reveals a concerning number of unprotected entry points and a high-severity taint flow. This indicates potential for introducing vulnerabilities, even if none have been publicly disclosed or exploited yet. The plugin's strengths lie in its careful handling of database queries and output, but these are overshadowed by the security risks posed by its extensive unprotected AJAX functionality. A balanced conclusion suggests that while the plugin is well-developed in certain areas, its security needs substantial improvement, particularly in its authentication and sanitization mechanisms for its exposed functionality.
Key Concerns
- Large attack surface without auth checks
- High severity taint flow with unsanitized path
- Missing capability checks on AJAX handlers
- Low number of nonce checks relative to AJAX handlers
Avalon23 Products Filter for WooCommerce Security Vulnerabilities
Avalon23 Products Filter for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Avalon23 Products Filter for WooCommerce Attack Surface
AJAX Handlers 42
Shortcodes 6
WordPress Hooks 94
Scheduled Events 1
Maintenance & Trust
Avalon23 Products Filter for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Avalon23 Products Filter for WooCommerce Alternatives
annasta Filters for WooCommerce
annasta-woocommerce-product-filters
All-in-one products search and filtering solution for your WooCommerce shop with rich features and customization options.
WOOF by Category
woof-by-category
WooCommerce Product Filter (WOOF) extension to display a set of filters depending on the current product category page.
Active Products Tables for WooCommerce. Use constructor to create tables
profit-products-tables-for-woocommerce
WooCommerce Active Products Tables - is the WooCommerce Products Table plugin displaying shop products in table format
MDTF – Meta Data and Taxonomies Filter
wp-meta-data-filter-and-taxonomy-filter
The main idea of the plugin – make your WordPress site content is filterable and searchable by meta fields and taxonomies on the same time.
Shop Products Filter
trusty-woo-products-filter
Filter all products of your woocommerce shop. Filter by categories,tags,attributes,taxonomies,price slider,on sale etc.
Avalon23 Products Filter for WooCommerce Developer Profile
2 plugins · 10 total installs
How We Detect Avalon23 Products Filter for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/admin/system.css/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/helper.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/selectm-23.css/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/selectm-23.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/growls.css/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/popup-23.css/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/switcher-23.css/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/admin/options.css+7 more/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/helper.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/selectm-23.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/data-table-23/data-table-23.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/admin/generated-tables.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/popup-23.js/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/admin/alasql.min.js+1 more/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/admin/system.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/helper.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/selectm-23.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/selectm-23.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/growls.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/popup-23.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/switcher-23.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/css/admin/options.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/data-table-23/data-table-23.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/data-table-23/data-table-23.css?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/admin/generated-tables.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/popup-23.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/admin/alasql.min.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/spectrum/spectrum.min.js?ver=/wp-content/plugins/avalon23-products-filter-for-woocommerce/assets/js/spectrum/spectrum.min.css?ver=HTML / DOM Fingerprints
avalon23-products-filteravalon23-filter-widgetavalon23-color-paletteavalon23-color-palette-wrapper<!-- avalon23-products-filter -->data-avalon23-filter-iddata-avalon23-optionsdata-avalon23-ajax-urldata-avalon23-widget-idavalon23Avalon23_AdminAvalon23_SettingsAvalon23_VocabularyAvalon23_CompatibilityAvalon23_DB_Controller+8 more/wp-json/avalon23/v1/get_filters/wp-json/avalon23/v1/get_products[avalon23][avalon23_button][avalon23_h_images]