Bizzorder – Pre Order for WooCommerce Security & Risk Analysis

wordpress.org/plugins/bizzorder

Simple and lightweight Pre-Order plugin for WooCommerce. Allow customers to pre-order products before they are available.

0 active installs v1.0.2 PHP 8.0+ WP 6.2+ Updated Feb 22, 2026
pre-orderpre-orderspreorderwoocommercewoocommerce-addons
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bizzorder – Pre Order for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Bizzorder – Pre Order for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The Bizzorder plugin v1.0.2 exhibits a generally strong security posture with robust implementation of access controls and output sanitization. The static analysis reveals a good number of nonce and capability checks, along with a very high percentage of properly escaped output. The complete absence of direct file operations and dangerous functions is also a positive indicator. Furthermore, the plugin has no recorded vulnerability history, suggesting a consistent track record of secure development or diligent patching.

However, there are specific areas of concern that warrant attention. The presence of two taint flows with unsanitized paths, both flagged as high severity, indicates a potential risk of injection vulnerabilities, even if they haven't manifested as known CVEs yet. The single SQL query is not using prepared statements, which, while not a critical flaw in isolation for a single query, deviates from best practices and could be a vector for SQL injection if the input is not meticulously validated. The plugin also makes four external HTTP requests, which, if not handled with care and proper validation of the returned data, could introduce risks.

In conclusion, Bizzorder v1.0.2 has many strengths, particularly in its authentication and output handling. The primary weaknesses lie in the identified taint flows and the unparameterized SQL query. While the lack of past vulnerabilities is encouraging, the identified taint flows should be treated as a significant potential risk requiring immediate investigation and remediation.

Key Concerns

  • High severity taint flows found
  • SQL queries not using prepared statements
  • External HTTP requests present
Vulnerabilities
None known

Bizzorder – Pre Order for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Bizzorder – Pre Order for WooCommerce Release Timeline

v1.0.2Current
v1.0.1
Code Analysis
Analyzed Mar 17, 2026

Bizzorder – Pre Order for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
28
685 escaped
Nonce Checks
9
Capability Checks
9
File Operations
0
External Requests
4
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

96% escaped713 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

7 flows2 with unsanitized paths
ajax_save_options (admin\options-framework\class-bizzplugin-framework.php:462)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Bizzorder – Pre Order for WooCommerce Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 8

authwp_ajax_bizzplugin_save_optionsadmin\options-framework\class-bizzplugin-framework.php:116
authwp_ajax_bizzplugin_reset_sectionadmin\options-framework\class-bizzplugin-framework.php:117
authwp_ajax_bizzplugin_reset_alladmin\options-framework\class-bizzplugin-framework.php:118
authwp_ajax_bizzplugin_test_webhookadmin\options-framework\class-bizzplugin-framework.php:119
authwp_ajax_bizzplugin_install_pluginadmin\options-framework\class-bizzplugin-framework.php:120
authwp_ajax_bizzplugin_activate_pluginadmin\options-framework\class-bizzplugin-framework.php:121
authwp_ajax_bizzplugin_generate_api_keyadmin\options-framework\class-bizzplugin-framework.php:122
authwp_ajax_bizzplugin_delete_api_keyadmin\options-framework\class-bizzplugin-framework.php:123
WordPress Hooks 53
filterplugin_row_metaadmin\class-admin-loader.php:59
actionadmin_enqueue_scriptsadmin\class-admin-loader.php:62
actionadmin_menuadmin\class-admin-loader.php:64
filterplugins_api_resultadmin\class-admin-loader.php:65
actioninitadmin\framework-loader.php:61
actionadmin_enqueue_scriptsadmin\options-framework\class-bizzplugin-framework.php:115
actionrest_api_initadmin\options-framework\class-bizzplugin-framework.php:124
actionadd_meta_boxesadmin\options-framework\class-bizzplugin-metabox.php:110
actionsave_postadmin\options-framework\class-bizzplugin-metabox.php:111
actionadmin_enqueue_scriptsadmin\options-framework\class-bizzplugin-metabox.php:112
actionadmin_menuadmin\options-framework\class-bizzplugin-panel.php:189
actionadmin_body_classadmin\options-framework\class-bizzplugin-panel.php:190
actionadmin_enqueue_scriptsadmin\options-framework\includes\class-setup-wizard.php:147
actionadmin_initadmin\options-framework\includes\class-setup-wizard.php:183
actionbizzplugin_options_savedadmin\options-framework\includes\class-webhook-handler.php:46
actionplugins_loadedadmin\options-framework\options-loader.php:36
actionadmin_noticesbizzorder.php:82
actionbefore_woocommerce_initbizzorder.php:87
actionadmin_enqueue_scriptsbizzorder.php:99
actionwp_enqueue_scriptsbizzorder.php:100
actionplugins_loadedbizzorder.php:280
filterwoocommerce_add_to_cart_validationincludes\class-cart.php:21
actionwoocommerce_after_cart_item_nameincludes\class-cart.php:25
filterwoocommerce_widget_cart_item_quantityincludes\class-cart.php:28
actionwoocommerce_checkout_update_order_metaincludes\class-checkout.php:20
actionwoocommerce_store_api_checkout_update_order_metaincludes\class-checkout.php:21
filterwoocommerce_payment_complete_order_statusincludes\class-checkout.php:24
filterwoocommerce_cod_process_payment_order_statusincludes\class-checkout.php:27
actionwoocommerce_order_status_changedincludes\class-checkout.php:30
filtermanage_edit-shop_order_columnsincludes\class-order.php:20
filtermanage_woocommerce_page_wc-orders_columnsincludes\class-order.php:21
actionmanage_shop_order_posts_custom_columnincludes\class-order.php:24
actionmanage_woocommerce_page_wc-orders_custom_columnincludes\class-order.php:25
actionwoocommerce_order_item_meta_endincludes\class-order.php:28
actionwoocommerce_admin_order_data_after_order_detailsincludes\class-order.php:31
actionwoocommerce_product_options_stock_statusincludes\class-product.php:20
actionwoocommerce_process_product_metaincludes\class-product.php:21
actionwoocommerce_product_after_variable_attributesincludes\class-product.php:24
actionwoocommerce_save_product_variationincludes\class-product.php:25
filterwoocommerce_product_add_to_cart_textincludes\class-shop.php:20
filterwoocommerce_product_single_add_to_cart_textincludes\class-shop.php:21
filterwoocommerce_available_variationincludes\class-shop.php:24
actionwoocommerce_before_add_to_cart_formincludes\class-shop.php:27
actionwoocommerce_after_shop_loop_item_titleincludes\class-shop.php:28
actionwoocommerce_before_shop_loop_item_titleincludes\class-shop.php:31
actionwoocommerce_before_single_product_summaryincludes\class-shop.php:32
filterwoocommerce_get_availability_textincludes\class-shop.php:35
actioninitincludes\class-status.php:25
filterwc_order_statusesincludes\class-status.php:28
filterbulk_actions-edit-shop_orderincludes\class-status.php:31
filterbulk_actions-woocommerce_page_wc-ordersincludes\class-status.php:32
actioninitincludes\class-status.php:35
actionbizzorder_check_preordersincludes\class-status.php:36

Scheduled Events 1

bizzorder_check_preorders
Maintenance & Trust

Bizzorder – Pre Order for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 22, 2026
PHP min version8.0
Downloads196

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Bizzorder – Pre Order for WooCommerce Developer Profile

Saiful Islam

14 plugins · 19K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
116 days
View full developer profile
Detection Fingerprints

How We Detect Bizzorder – Pre Order for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bizzorder/assets/css/admin.css/wp-content/plugins/bizzorder/assets/js/admin.js/wp-content/plugins/bizzorder/assets/css/frontend.css/wp-content/plugins/bizzorder/assets/js/frontend.js
Script Paths
/wp-content/plugins/bizzorder/assets/js/admin.js/wp-content/plugins/bizzorder/assets/js/frontend.js
Version Parameters
bizzorder/assets/css/admin.css?ver=bizzorder/assets/js/admin.js?ver=bizzorder/assets/css/frontend.css?ver=bizzorder/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
bizzorder-settings
Data Attributes
bizzorder_settings
JS Globals
BIZZORDER_DATA
FAQ

Frequently Asked Questions about Bizzorder – Pre Order for WooCommerce