Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Security & Risk Analysis

wordpress.org/plugins/cart-pdf-for-woocommerce

Generate and download a WooCommerce cart PDF with full product details and pricing.

10 active installs v1.0.2 PHP 5.3+ WP 2.0+ Updated Nov 28, 2025
cart-pdfwoo-pdfwoocommercewoocommerce-cartwoocommerce-pdf
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Safe to Use in 2026?

Generally Safe

Score 100/100

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin "cart-pdf-for-woocommerce" v1.0.2 exhibits a generally strong security posture based on the provided static analysis. It utilizes prepared statements for all SQL queries and has a high percentage of properly escaped output, which are good practices that mitigate common web vulnerabilities. The limited attack surface, with only one AJAX handler and no exposed REST API routes, shortcodes, or cron events, is also a positive indicator. The absence of recorded vulnerabilities in its history suggests a well-maintained and secure codebase over time.

However, the analysis does indicate some areas that warrant attention. While the single AJAX handler has a capability check, the lack of nonce checks on this handler, combined with a file operation and external HTTP requests, could potentially be exploited in certain scenarios if an attacker can manipulate the input to these operations. The taint analysis reporting zero flows is excellent, but this could also be due to the limited complexity of the code or the specific analysis performed. The current data suggests a low risk, but vigilance is still recommended, especially regarding the potential for privilege escalation or unauthorized file operations via the AJAX endpoint if not perfectly secured against all forms of manipulation.

Key Concerns

  • Missing nonce check on AJAX handler
  • File operation without specific context
  • External HTTP requests without specific context
Vulnerabilities
None known

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
1
42 escaped
Nonce Checks
1
Capability Checks
2
File Operations
1
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

98% escaped43 total outputs
Attack Surface

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_yeekit_dismiss_notyyeekit\document.php:13
WordPress Hooks 14
actionyeepdf_enable_statusbackend\index.php:7
actionwoocommerce_after_cart_totalsbackend\index.php:8
actioninitcart-pdf-for-woocommerce.php:20
actionwoocommerce_loadedcart-pdf-for-woocommerce.php:24
actionplugins_loadedcart-pdf-for-woocommerce.php:85
actionadmin_noticescart-pdf-for-woocommerce.php:89
actionadmin_menuyeekit\document.php:10
actionadmin_enqueue_scriptsyeekit\document.php:11
filterfluentform_global_addonsyeekit\document.php:12
actionadmin_noticesyeekit\document.php:14
actionelementor/element/form/section_form_options/after_section_endyeekit\document.php:15
actionadmin_inityeekit\document.php:17
actionelementor/editor/after_enqueue_stylesyeekit\document.php:19
filterhttp_responseyeekit\document.php:208
Maintenance & Trust

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedNov 28, 2025
PHP min version5.3
Downloads477

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder Developer Profile

add-ons.org

59 plugins · 26K total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
48 days
View full developer profile
Detection Fingerprints

How We Detect Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cart-pdf-for-woocommerce/backend/index.php/wp-content/plugins/cart-pdf-for-woocommerce/yeekit/document.php

HTML / DOM Fingerprints

CSS Classes
yeekit_addons_list
Data Attributes
data-slug="cart-pdf-for-woocommerce"data-version="1.0.2"
JS Globals
window.yeekit_document_addons
FAQ

Frequently Asked Questions about Cart PDF – Quote PDF for WooCommerce + Drag and Drop Template Builder