
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Security & Risk Analysis
wordpress.org/plugins/bc-woo-custom-thank-you-pagesCreate thank you pages for all products, per products or per category
Is Custom Thank You Page Customize For WooCommerce by Binary Carpenter Safe to Use in 2026?
Generally Safe
Score 91/100Custom Thank You Page Customize For WooCommerce by Binary Carpenter has a strong security track record. Known vulnerabilities have been patched promptly.
The "bc-woo-custom-thank-you-pages" plugin v1.4.22 exhibits a mixed security posture. While it shows strengths in SQL query handling and output escaping, there are significant concerns regarding its attack surface and past vulnerability history. The presence of one unprotected AJAX handler represents a clear entry point that could be exploited without proper authorization checks. The use of the `unserialize` function is also a red flag, as it can lead to remote code execution if user-supplied data is unserialized without strict validation.
The vulnerability history indicates a past medium-severity vulnerability, specifically related to missing authorization. This pattern, coupled with the current unprotected AJAX handler, suggests a recurring issue with ensuring adequate access controls on plugin entry points. While there are no currently unpatched CVEs, the history and code analysis point to potential weaknesses that require attention. Overall, the plugin has some good security practices in place, but the unprotected AJAX endpoint and the past authorization vulnerability warrant caution and further investigation.
Key Concerns
- Unprotected AJAX handler
- Dangerous function 'unserialize' used
- Past medium vulnerability (Missing Authorization)
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Custom Thank You Page Customize For WooCommerce by Binary Carpenter <= 1.4.13 - Missing Authorization
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Code Analysis
Dangerous Functions Found
Output Escaping
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Attack Surface
AJAX Handlers 1
WordPress Hooks 9
Maintenance & Trust
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Maintenance & Trust
Maintenance Signals
Community Trust
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Alternatives
Thank You Page for WooCommerce
wc-thanks-redirect
Thank You Page for WooCommerce allows adding Thank You Page or Thank You URL for WooCommerce Products for your Customers.
NextMove Lite – Thank You Page for WooCommerce
woo-thank-you-page-nextmove-lite
The only plugin in WooCommerce that empowers you to build profit-pulling Thank You Pages with plug & play components.
Thank You Page Customizer for WooCommerce – Increase Your Sales
woo-thank-you-page-customizer
Craft a stunning thank you page effortlessly with our user-friendly customization tools, offer coupons to customers after purchase.
ThankRedirect – Custom Thank You Pages for WooCommerce
wc-thank-you-page
Redirect customers to beautiful custom thank you pages and turn every WooCommerce order into repeat sales.
Custom Thank You Page For Woocommerce
custom-thank-you-page-for-woocommerce-product
This is a modification of the CloudSkyrocket.com plugin. It is very simple and strait forward Plugin for Woocommerce Shop Owners that would like to se …
Custom Thank You Page Customize For WooCommerce by Binary Carpenter Developer Profile
7 plugins · 3K total installs
How We Detect Custom Thank You Page Customize For WooCommerce by Binary Carpenter
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bc-woo-custom-thank-you-pages/bundle/css/backend.css/wp-content/plugins/bc-woo-custom-thank-you-pages/bundle/js/backend-bundle.jsbundle/js/backend-bundle.jsbc-woo-custom-thank-you-pages/bundle/css/backend.css?ver=bc-woo-custom-thank-you-pages/bundle/js/backend-bundle.js?ver=HTML / DOM Fingerprints
bctk-options-form-wrapper<!-- This is the main wrapper -->data-option-namedata-field-idBC_TK_AJAX_URLBC_TK_NONCE/wp-json/bc-tk/v1/options[bc_tk_thank_you_message][bc_tk_customer_details][bc_tk_order_summary]