Bundle Product Manager Security & Risk Analysis

wordpress.org/plugins/bundle-product-manager-for-woocommerce

Our WordPress WooCommerce plugin provides unique functionality by allowing you to easily add multiple additional products to your main product before …

0 active installs v1.0.9 PHP 7.4+ WP 6.0+ Updated Oct 28, 2024
additional-productsorder-customizationproduct-bundleswoocommercewoocommerce-plugin
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bundle Product Manager Safe to Use in 2026?

Generally Safe

Score 92/100

Bundle Product Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of "bundle-product-manager-for-woocommerce" v1.0.9 reveals a strong security posture with no identified vulnerabilities in its attack surface, code signals, or taint analysis. The plugin demonstrates good security practices by having zero AJAX handlers, REST API routes, shortcodes, or cron events, and crucially, none of these entry points are unprotected. The absence of dangerous functions, file operations, and external HTTP requests further reinforces this positive assessment. The SQL queries are all prepared, and output escaping is handled well, with only a minor percentage of outputs requiring scrutiny. The vulnerability history is also clear, with no known CVEs, indicating a well-maintained and secure codebase.

While the plugin exhibits excellent security hygiene and a remarkably clean analysis, the complete lack of identified vulnerabilities and the absence of certain security checks like capability checks on all code paths (though there are nonce checks) could potentially indicate a limited or less complex codebase, or perhaps a lack of dynamic testing to uncover deeper issues. However, based solely on the provided static analysis data, the plugin presents a very low risk. The strengths lie in its minimal attack surface and adherence to secure coding principles.

Vulnerabilities
None known

Bundle Product Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Bundle Product Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
22 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped23 total outputs
Attack Surface

Bundle Product Manager Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionadmin_noticesbundle-product-manager.php:90
actionadmin_noticesbundle-product-manager.php:110
actionwoocommerce_process_product_metasrc\php\BPM_Handlers.php:64
actionadmin_enqueue_scriptssrc\php\BPM_Main.php:31
actionwp_enqueue_scriptssrc\php\BPM_Main.php:32
filterwoocommerce_product_data_tabssrc\php\BPM_Output.php:30
actionwoocommerce_product_data_panelssrc\php\BPM_Output.php:31
actionwoocommerce_after_add_to_cart_formsrc\php\BPM_Output.php:32
Maintenance & Trust

Bundle Product Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedOct 28, 2024
PHP min version7.4
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs0
Developer Profile

Bundle Product Manager Developer Profile

Alex

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Bundle Product Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/css/admin-main.css/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/css/main.css/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/js/admin-main.js/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/js/main.js
Script Paths
/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/js/admin-main.min.js/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/js/main.min.js
Version Parameters
/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/css/admin-main.css?ver=/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/css/main.css?ver=/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/js/admin-main.js?ver=/wp-content/plugins/bundle-product-manager-for-woocommerce/assets/js/main.js?ver=

HTML / DOM Fingerprints

JS Globals
bpmAdminObject
FAQ

Frequently Asked Questions about Bundle Product Manager