Bmnh Add to Cart Text Changer for WooCommerce Security & Risk Analysis

wordpress.org/plugins/bmnh-add-to-cart-text-change

Change the "Add to cart" button text across your WooCommerce store quickly and simply.

0 active installs v1.0.3 PHP 7.4+ WP 5.0+ Updated Feb 22, 2026
add-to-cartbuttonchange-add-to-cart-textcustom-cart-buttonwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bmnh Add to Cart Text Changer for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Bmnh Add to Cart Text Changer for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "bmnh-add-to-cart-text-change" plugin, version 1.0.3, exhibits a generally strong security posture with several good practices in place. The absence of any recorded vulnerabilities and the implementation of nonces and capability checks on all its AJAX endpoints are commendable. Furthermore, the use of prepared statements for all SQL queries and a high percentage of properly escaped output indicate a developer conscious of common web security pitfalls.

However, there are potential areas of concern identified in the static analysis. Two flows with unsanitized paths were flagged during taint analysis, indicating a risk of introducing vulnerabilities if these paths are not properly handled. While no critical or high-severity taint flows were explicitly detailed, the presence of unsanitized paths warrants attention. Additionally, the plugin makes two external HTTP requests, which could introduce risks if the target endpoints are compromised or if the requests are not made securely. The use of a bundled library, Select2, also presents a minor risk if it's not kept up-to-date, though no specific version information is provided to assess this further.

Overall, the plugin demonstrates a good foundation for security, but the identified unsanitized paths in the taint analysis and the external HTTP requests should be investigated to ensure they do not pose a significant risk. The lack of any historical vulnerabilities is a positive indicator, suggesting a mature and secure development process. The plugin's security is good, but requires a review of the identified taint flows.

Key Concerns

  • Taint flows with unsanitized paths (2)
  • External HTTP requests (2)
  • Bundled library (Select2)
Vulnerabilities
None known

Bmnh Add to Cart Text Changer for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Bmnh Add to Cart Text Changer for WooCommerce Release Timeline

v1.0.3Current
v1.0.2
v1.0.1
v1.0
Code Analysis
Analyzed Apr 16, 2026

Bmnh Add to Cart Text Changer for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
39
650 escaped
Nonce Checks
9
Capability Checks
9
File Operations
0
External Requests
2
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

100% prepared1 total queries

Output Escaping

94% escaped689 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

7 flows2 with unsanitized paths
ajax_save_options (admin/options-framework/class-bizzplugin-framework.php:462)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Bmnh Add to Cart Text Changer for WooCommerce Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 8

authwp_ajax_bizzplugin_save_optionsadmin/options-framework/class-bizzplugin-framework.php:116
authwp_ajax_bizzplugin_reset_sectionadmin/options-framework/class-bizzplugin-framework.php:117
authwp_ajax_bizzplugin_reset_alladmin/options-framework/class-bizzplugin-framework.php:118
authwp_ajax_bizzplugin_test_webhookadmin/options-framework/class-bizzplugin-framework.php:119
authwp_ajax_bizzplugin_install_pluginadmin/options-framework/class-bizzplugin-framework.php:120
authwp_ajax_bizzplugin_activate_pluginadmin/options-framework/class-bizzplugin-framework.php:121
authwp_ajax_bizzplugin_generate_api_keyadmin/options-framework/class-bizzplugin-framework.php:122
authwp_ajax_bizzplugin_delete_api_keyadmin/options-framework/class-bizzplugin-framework.php:123
WordPress Hooks 20
actionadmin_enqueue_scriptsadmin/class-admin-loader.php:14
actionadmin_footeradmin/class-admin-loader.php:15
actioninitadmin/framework-loader.php:9
actionadmin_enqueue_scriptsadmin/options-framework/class-bizzplugin-framework.php:115
actionrest_api_initadmin/options-framework/class-bizzplugin-framework.php:124
actionadd_meta_boxesadmin/options-framework/class-bizzplugin-metabox.php:110
actionsave_postadmin/options-framework/class-bizzplugin-metabox.php:111
actionadmin_enqueue_scriptsadmin/options-framework/class-bizzplugin-metabox.php:112
actionadmin_menuadmin/options-framework/class-bizzplugin-panel.php:178
actionadmin_body_classadmin/options-framework/class-bizzplugin-panel.php:179
actionadmin_enqueue_scriptsadmin/options-framework/includes/class-setup-wizard.php:147
actionadmin_initadmin/options-framework/includes/class-setup-wizard.php:183
actionbizzplugin_options_savedadmin/options-framework/includes/class-webhook-handler.php:46
actionplugins_loadedadmin/options-framework/options-loader.php:36
actionplugins_loadedbmnh-add-to-cart-text-change.php:56
actionadmin_noticesbmnh-add-to-cart-text-change.php:67
actionbefore_woocommerce_initbmnh-add-to-cart-text-change.php:71
filterwoocommerce_product_single_add_to_cart_textincludes/class-frontend-loader.php:15
filterwoocommerce_product_add_to_cart_textincludes/class-frontend-loader.php:16
actionwp_headincludes/class-frontend-loader.php:17
Maintenance & Trust

Bmnh Add to Cart Text Changer for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 22, 2026
PHP min version7.4
Downloads293

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Bmnh Add to Cart Text Changer for WooCommerce Developer Profile

NAZMUL

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Bmnh Add to Cart Text Changer for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bmnh-add-to-cart-text-change/admin/assets/css/admin.css/wp-content/plugins/bmnh-add-to-cart-text-change/admin/assets/js/admin.js
Script Paths
https://embed.tawk.to/698abdf2ece3f61c38610ee5/1jh2vbvjr
Version Parameters
bmnh-add-to-cart-text-change/admin/assets/css/admin.css?ver=bmnh-add-to-cart-text-change/admin/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
bmnh-add-to-cart-text-change-settingsbmnh-add-to-cart-text-change-admin-wrap
HTML Comments
<!--Start of Tawk.to Script--><!--End of Tawk.to Script-->
Data Attributes
data-page-titledata-parent-menu-slug
JS Globals
Tawk_APITawk_LoadStart
FAQ

Frequently Asked Questions about Bmnh Add to Cart Text Changer for WooCommerce