
Cart Dropdown – Webaddict Security & Risk Analysis
wordpress.org/plugins/cart-dropdown-webaddictWooCommerce Cart Dropdown A simple WordPress plugin for WooCommerce to show cart items as dropdown.
Is Cart Dropdown – Webaddict Safe to Use in 2026?
Generally Safe
Score 85/100Cart Dropdown – Webaddict has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cart-dropdown-webaddict" plugin v1.0.0 exhibits a mixed security posture. On the positive side, the absence of known CVEs and a clean taint analysis suggest a lack of historically exploited or severe vulnerabilities. The plugin also demonstrates good practices by exclusively using prepared statements for SQL queries and not performing file operations or external HTTP requests. However, significant concerns arise from the static analysis. The most critical issue is the complete lack of nonce checks and capability checks. With one entry point via a shortcode, this absence creates a substantial risk of unauthorized actions or data manipulation if the shortcode's functionality is sensitive. Furthermore, a very low percentage of output escaping (11%) indicates a high likelihood of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data is likely being rendered without proper sanitization. The plugin's attack surface is minimal, but the unprotected nature of its single entry point and the poor output escaping are serious weaknesses.
Key Concerns
- Missing Nonce Checks
- Missing Capability Checks
- Low Output Escaping Percentage (XSS Risk)
Cart Dropdown – Webaddict Security Vulnerabilities
Cart Dropdown – Webaddict Release Timeline
Cart Dropdown – Webaddict Code Analysis
Output Escaping
Cart Dropdown – Webaddict Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Cart Dropdown – Webaddict Maintenance & Trust
Maintenance Signals
Community Trust
Cart Dropdown – Webaddict Alternatives
Sliding Cart for WooCommerce by FunnelKit – Skip Cart & Reach WooCommerce Checkout Faster
cart-for-woocommerce
FunnelKit Cart adds a beautiful sliding cart to your WooCommerce store. Let the buyers add items, edit quantity and add upsells on the side cart.
Abandoned Cart Lite for WooCommerce
woocommerce-abandoned-cart
Track abandoned carts and send automated, customizable abandoned cart recovery emails. Reduce cart abandonment, recover lost revenue & increase sales.
Disable Cart Fragments by Optimocha
disable-cart-fragments
A better way to disable WooCommerce's cart fragments script, and re-enqueue it when the cart is updated. Works with all caching plugins.
Metorik – Reports & Email Automation for WooCommerce
metorik-helper
The Metorik Helper helps provide your WooCommerce store with powerful analytics, reports, and tools.
Mobile Contact Bar
mobile-contact-bar
Allow your visitors to contact you via mobile phones, or access your site's pages instantly.
Cart Dropdown – Webaddict Developer Profile
2 plugins · 20 total installs
How We Detect Cart Dropdown – Webaddict
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cart-dropdown-webaddict/style.csscart-dropdown-webaddict/style.css?ver=HTML / DOM Fingerprints
woo_mini_cartbasket-item-counthover_cart_boxbtn-center<div class="woo_mini_cart"><div class="basket-item-count"><div class="hover_cart_box"><table>