Bulk Product Selling Security & Risk Analysis

wordpress.org/plugins/bulk-products-selling

Sell many products in one Like Group Product. But you can use single price here.

0 active installs v1.0.2 PHP 7.0+ WP 4.0+ Updated Unknown
bulk-productsell-bulk-productwoocommerce-bulk-products
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bulk Product Selling Safe to Use in 2026?

Generally Safe

Score 100/100

Bulk Product Selling has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "bulk-products-selling" v1.0.2 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of identified dangerous functions, raw SQL queries, file operations, and external HTTP requests are all strong indicators of good development practices. Furthermore, the lack of any recorded vulnerabilities or CVEs in its history suggests a history of secure development or diligent patching by users, which is encouraging. However, there are some areas for concern. The plugin has zero AJAX handlers, REST API routes, shortcodes, or cron events, which results in a very small attack surface. While this is positive, it's also worth noting that there are no detected capability checks on any of these potential entry points. While the static analysis reports only 1 capability check in total, the complete absence of checks on any user-facing entry points would be a significant risk. Additionally, 40% of output escaping is not properly handled, which could lead to cross-site scripting (XSS) vulnerabilities if not addressed. The lack of taint analysis data is also a limitation, as it prevents a deeper understanding of potential data flow vulnerabilities.

Key Concerns

  • 40% of output escaping is not properly handled
  • Lack of specific security checks on identified entry points
Vulnerabilities
None known

Bulk Product Selling Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Bulk Product Selling Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
9 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

60% escaped15 total outputs
Attack Surface

Bulk Product Selling Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 28
actionplugins_loadedbulk-products-selling.php:79
actionadmin_noticesbulk-products-selling.php:155
actioninitbulk-products-selling.php:188
actioninitbulk-products-selling.php:191
filterwoocommerce_order_item_display_meta_keyincludes\Admin\Order.php:15
filterwoocommerce_order_item_display_meta_valueincludes\Admin\Order.php:16
filterproduct_type_selectorincludes\Admin\Product.php:15
actionwoocommerce_product_options_general_product_dataincludes\Admin\Product.php:16
filterwoocommerce_product_data_tabsincludes\Admin\Product.php:19
actionwoocommerce_product_data_panelsincludes\Admin\Product.php:20
actionsave_post_productincludes\Admin\Product.php:21
actionadmin_footerincludes\Admin\Product.php:22
filtersubscrpt_simple_enable_checkbox_classesincludes\Admin\Subscription.php:15
actionrest_api_initincludes\Api.php:16
actionadmin_enqueue_scriptsincludes\Assets.php:16
actionwp_enqueue_scriptsincludes\Assets.php:18
filterwoocommerce_cart_item_classincludes\Frontend\Cart.php:13
actionwoocommerce_before_calculate_totalsincludes\Frontend\Cart.php:14
actionwoocommerce_remove_cart_itemincludes\Frontend\Cart.php:15
filterwoocommerce_widget_cart_item_visibleincludes\Frontend\Cart.php:16
filterwoocommerce_cart_contents_countincludes\Frontend\Cart.php:17
actionwoocommerce_checkout_create_order_line_itemincludes\Frontend\Order.php:13
filterwoocommerce_order_item_classincludes\Frontend\Order.php:14
filterwoocommerce_get_item_countincludes\Frontend\Order.php:15
actionwoocommerce_order_item_meta_startincludes\Frontend\Order.php:16
actionwp_enqueue_scriptsincludes\Frontend\Product.php:13
actionwoocommerce_single_product_summaryincludes\Frontend\Product.php:14
actionwoocommerce_add_to_cartincludes\Frontend\Product.php:15
Maintenance & Trust

Bulk Product Selling Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedUnknown
PHP min version7.0
Downloads924

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Bulk Product Selling Developer Profile

Abu Huraira Bin Aman

7 plugins · 9K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
238 days
View full developer profile
Detection Fingerprints

How We Detect Bulk Product Selling

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bulk-products-selling/assets/css/frontend.css/wp-content/plugins/bulk-products-selling/assets/js/frontend.js/wp-content/plugins/bulk-products-selling/assets/css/admin.css/wp-content/plugins/bulk-products-selling/assets/js/admin.js
Script Paths
/wp-content/plugins/bulk-products-selling/assets/js/frontend.js/wp-content/plugins/bulk-products-selling/assets/js/admin.js
Version Parameters
bulk-products-selling/assets/css/frontend.css?ver=bulk-products-selling/assets/js/frontend.js?ver=bulk-products-selling/assets/css/admin.css?ver=bulk-products-selling/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
sdevs-bps-frontendsdevs-bps-admin-wrapper
HTML Comments
Copyright (c) 2021 SpringDevs (email: contact@springdevs.com). All rights reserved.Released under the GPL licenseThis is an add-on for WordPressThis program is free software; you can redistribute it and/or modify+17 more
Data Attributes
data-sdevs-bps-id
JS Globals
window.sdevs_bps_params
REST Endpoints
/wp-json/sdevs_bps/v1/products/wp-json/sdevs_bps/v1/cart
Shortcode Output
[bulk_products_selling]
FAQ

Frequently Asked Questions about Bulk Product Selling