
Cart Products for WordPress Security & Risk Analysis
wordpress.org/plugins/cart-products-for-woocommerceExtension for Woocommerce that allows you to add products quickly and easily to the cart straight from cart or checkout page.
Is Cart Products for WordPress Safe to Use in 2026?
Generally Safe
Score 85/100Cart Products for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cart-products-for-woocommerce" v1.0.4 plugin exhibits a generally positive security posture based on the static analysis. There are no identified dangerous functions, all SQL queries utilize prepared statements, and there are no external HTTP requests or file operations that appear to be concerning. The absence of known CVEs and a clean vulnerability history is a significant strength, suggesting a well-maintained or less targeted codebase.
However, several areas raise concern. The low percentage of properly escaped output (32%) indicates a significant risk of Cross-Site Scripting (XSS) vulnerabilities. While the total number of outputs is moderate, a substantial portion being unescaped is a critical weakness. Furthermore, the lack of nonce and capability checks across all entry points, particularly the single shortcode, means that any interaction with this shortcode could potentially be exploited without proper authorization or validation, leading to unauthorized actions or information disclosure.
Despite the strengths in SQL handling and the absence of known vulnerabilities, the identified issues with output escaping and the lack of authorization checks on its shortcode present tangible risks. The plugin is not as secure as its clean vulnerability history might initially suggest. Prioritizing the fixing of XSS vulnerabilities and implementing proper authorization checks on the shortcode is highly recommended.
Key Concerns
- Low percentage of properly escaped output
- Missing nonce checks on entry points
- Missing capability checks on entry points
Cart Products for WordPress Security Vulnerabilities
Cart Products for WordPress Code Analysis
Output Escaping
Cart Products for WordPress Attack Surface
Shortcodes 1
WordPress Hooks 18
Maintenance & Trust
Cart Products for WordPress Maintenance & Trust
Maintenance Signals
Community Trust
Cart Products for WordPress Alternatives
Minimum and Maximum Product Quantity for WooCommerce
minimum-and-maximum-product-quantity-for-woocommerce
"Minimum and Maximum Product Quantity for WooCommerce" plugin will allow the site admin to enable the feature of minimum and maximum purchas …
Direct Checkout for WooCommerce
woocommerce-direct-checkout
Formerly "WooCommerce Direct Checkout". This plugin simplifies the entire WooCommerce checkout process to improve your sales rate.
Sliding Cart for WooCommerce by FunnelKit – Skip Cart & Reach WooCommerce Checkout Faster
cart-for-woocommerce
FunnelKit Cart adds a beautiful sliding cart to your WooCommerce store. Let the buyers add items, edit quantity and add upsells on the side cart.
Force Authentification Before Checkout for WooCommerce
woo-force-authentification-before-checkout
Force customer to log in or register before checkout
Disable cart page for WooCommerce
disable-cart-page-for-woocommerce
Disable WooCommerce cart page and force customers to buy single products.
Cart Products for WordPress Developer Profile
4 plugins · 30 total installs
How We Detect Cart Products for WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cart-products-for-woocommerce/css/wccp.css/wp-content/plugins/cart-products-for-woocommerce/js/wccp.js/wp-content/plugins/cart-products-for-woocommerce/elementor/wccp-widget.php/wp-content/plugins/cart-products-for-woocommerce/gutenberg/src/init.php/wp-content/plugins/cart-products-for-woocommerce/js/wccp.jscart-products-for-woocommerce/css/wccp.css?ver=cart-products-for-woocommerce/js/wccp.js?ver=HTML / DOM Fingerprints
wccp-wrapwccp-qtywccp-qty-minuswccp-qty-pluswccp-in<div class="wccp-wrap"></div>