Catalog Booster & Product Catalog Mode for WooCommerce Security & Risk Analysis

wordpress.org/plugins/catalog-booster-for-woocommerce

Catalog Booster for WooCommerce lets you modify the standard layout, disable sales, transform e-commerce into simple & beautiful catalog.

1K active installs v1.2.8 PHP + WP 3.5+ Updated Dec 3, 2025
commercee-commerceecommerceproduct-catalogwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Catalog Booster & Product Catalog Mode for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Catalog Booster & Product Catalog Mode for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The plugin "catalog-booster-for-woocommerce" v1.2.8 exhibits a mixed security posture. On the positive side, it avoids dangerous functions, doesn't perform file operations, and its SQL queries are all secured with prepared statements. The absence of known CVEs and historical vulnerabilities is also a strong indicator of good maintenance and secure coding practices in the past. However, significant concerns arise from the static analysis. The plugin exposes two AJAX handlers that completely lack authentication checks. This creates a substantial attack surface that could be exploited by unauthenticated users to trigger potentially harmful actions within the plugin. Furthermore, a notable portion of output escaping is missing (only 31% properly escaped), which can lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not properly sanitized before being displayed.

Key Concerns

  • Unprotected AJAX handlers
  • Low percentage of properly escaped output
  • No nonce checks on AJAX handlers
Vulnerabilities
None known

Catalog Booster & Product Catalog Mode for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Catalog Booster & Product Catalog Mode for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
33
15 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

31% escaped48 total outputs
Attack Surface
2 unprotected

Catalog Booster & Product Catalog Mode for WooCommerce Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_implecode_wp_tooltip_hideincludes\tooltips.php:209
authwp_ajax_implecode_wp_tooltip_dismiss_allincludes\tooltips.php:225
WordPress Hooks 118
actionadmin_noticesfunctions\compatibility.php:13
actionadmin_enqueue_scriptsincludes\tooltips.php:14
actionadmin_print_footer_scriptsincludes\tooltips.php:20
filteric_cat_activation_wizard_completeincludes\woocat_activation_wizard.php:19
filteric_cat_activation_wizard_default_responseincludes\woocat_activation_wizard.php:20
filteric_cat_show_woocommerce_noticeincludes\woocat_activation_wizard.php:21
filteric_cat_activation_wizard_final_questionsincludes\woocat_activation_wizard.php:23
actionadmin_initincludes\woocat_admin_disabler.php:16
filtermanage_edit-product_columnsincludes\woocat_admin_disabler.php:24
actionwoocommerce_product_options_general_product_dataincludes\woocat_admin_disabler.php:25
actionadd_meta_boxesincludes\woocat_admin_disabler.php:29
actionwpincludes\woocat_button.php:15
actionwoocommerce_single_product_summaryincludes\woocat_button.php:20
actionproduct_detailsincludes\woocat_button.php:21
actionadd_meta_boxes_productincludes\woocat_button.php:54
actionwoocommerce_process_product_metaincludes\woocat_button.php:70
actionwpincludes\woocat_cart.php:15
filteric_product_page_price_displayincludes\woocat_cart.php:29
actionafter_price_tableincludes\woocat_cart.php:30
actionbefore_product_entryincludes\woocat_cart.php:31
filtertable_product_listing_other_entryincludes\woocat_cart.php:33
filterregister_post_type_argsincludes\woocat_catalog.php:16
filterwoocommerce_page_titleincludes\woocat_catalog.php:40
actionwpincludes\woocat_disabler.php:16
filterwoocommerce_is_purchasableincludes\woocat_disabler.php:21
filterwoocommerce_get_price_htmlincludes\woocat_disabler.php:31
filterwoocommerce_product_get_priceincludes\woocat_disabler.php:33
filteroption_woocommerce_enable_review_ratingincludes\woocat_disabler.php:40
filterwoocommerce_product_get_rating_htmlincludes\woocat_disabler.php:41
filtercomments_openincludes\woocat_disabler.php:45
actionwpincludes\woocat_ic_cart.php:14
actionic_cart_products_startincludes\woocat_ic_cart.php:15
filterproduct_post_type_arrayincludes\woocat_ic_cart.php:19
actionic_epc_loadedincludes\woocat_listing.php:15
actionparse_queryincludes\woocat_listing.php:21
actionparse_queryincludes\woocat_listing.php:23
actionpre_get_postsincludes\woocat_listing.php:28
actionparse_tax_queryincludes\woocat_listing.php:29
actionic_ajax_self_submit_initincludes\woocat_listing.php:30
filteric_set_archive_priceincludes\woocat_listing.php:36
filterproduct_post_type_arrayincludes\woocat_listing.php:37
filterproduct_taxonomy_arrayincludes\woocat_listing.php:38
filtercurrent_product_post_typeincludes\woocat_listing.php:39
filteric_current_product_taxincludes\woocat_listing.php:40
filtercurrent_product_catalog_taxonomyincludes\woocat_listing.php:41
filtershow_categories_taxonomyincludes\woocat_listing.php:42
filterprice_formatincludes\woocat_listing.php:43
filterwidget_product_categories_dropdown_argsincludes\woocat_listing.php:44
filterwidget_product_categories_argsincludes\woocat_listing.php:45
filtershortcode_queryincludes\woocat_listing.php:46
filterhome_product_listing_queryincludes\woocat_listing.php:47
filterproduct_listing_idincludes\woocat_listing.php:48
filteric_category_image_idincludes\woocat_listing.php:49
actionwoocommerce_shop_loopincludes\woocat_listing.php:57
actionwoocommerce_before_shop_loopincludes\woocat_listing.php:58
actionwoocommerce_before_shop_loopincludes\woocat_listing.php:59
actionwoocommerce_shortcode_before_featured_products_loopincludes\woocat_listing.php:62
actionwoocommerce_shortcode_after_featured_products_loopincludes\woocat_listing.php:63
filteric_force_pre_get_products_onlyincludes\woocat_listing.php:68
filterwc_get_template_partincludes\woocat_listing.php:83
actionthe_postincludes\woocat_listing.php:110
actionwpincludes\woocat_page.php:15
filteric_maybe_engueue_allincludes\woocat_page.php:26
actionwoocommerce_before_single_product_summaryincludes\woocat_page.php:31
actionwoocommerce_before_single_product_summaryincludes\woocat_page.php:32
filterprice_formatincludes\woocat_page.php:35
filterwidget_product_categories_dropdown_argsincludes\woocat_page.php:37
filterwidget_product_categories_argsincludes\woocat_page.php:38
filteric_get_product_imageincludes\woocat_page.php:39
filteris_lightbox_enabledincludes\woocat_page.php:40
filteris_magnifier_enabledincludes\woocat_page.php:41
filterproduct_post_type_arrayincludes\woocat_page.php:43
filterproduct_taxonomy_arrayincludes\woocat_page.php:44
filtercurrent_product_post_typeincludes\woocat_page.php:45
filteric_current_product_taxincludes\woocat_page.php:46
filtercurrent_product_catalog_taxonomyincludes\woocat_page.php:47
filtershow_categories_taxonomyincludes\woocat_page.php:48
actionafter_product_detailsincludes\woocat_page.php:51
filterproduct_post_type_arrayincludes\woocat_page.php:100
filterproduct_taxonomy_arrayincludes\woocat_page.php:101
filtercurrent_product_post_typeincludes\woocat_page.php:102
filteric_current_product_taxincludes\woocat_page.php:103
filtercurrent_product_catalog_taxonomyincludes\woocat_page.php:104
filtershow_categories_taxonomyincludes\woocat_page.php:105
filterprice_formatincludes\woocat_page.php:106
filterwidget_product_categories_dropdown_argsincludes\woocat_page.php:112
filterwidget_product_categories_argsincludes\woocat_page.php:113
filteric_get_product_imageincludes\woocat_page.php:114
filteris_lightbox_enabledincludes\woocat_page.php:115
filteris_magnifier_enabledincludes\woocat_page.php:116
actionbefore_product_entryincludes\woocat_page.php:117
actionafter_product_entryincludes\woocat_page.php:118
actionafter_product_detailsincludes\woocat_page.php:119
actionbefore_shortcode_catalogincludes\woocat_page.php:121
filterupload_dirincludes\woocat_page.php:130
filterproduct_post_type_arrayincludes\woocat_page.php:138
actionafter_shortcode_catalogincludes\woocat_page.php:185
filterproduct_listing_idincludes\woocat_page.php:198
actionadmin_menuincludes\woocat_settings.php:14
actionadmin_initincludes\woocat_settings.php:20
actionadmin_print_footer_scriptsincludes\woocat_settings.php:26
actionwoocat-settings-menuincludes\woocat_settings.php:126
actionwoocat-settings-menuincludes\woocat_settings.php:128
actionic_woocat_settings_contentincludes\woocat_settings.php:177
actionic_woocat_settings_contentincludes\woocat_settings.php:203
actionic_product_gallery_settingsincludes\woocat_settings.php:226
actionic_woocat_settings_contentincludes\woocat_settings.php:238
actionic_woocat_settings_contentincludes\woocat_settings.php:255
actionic_woocat_settings_contentincludes\woocat_settings.php:283
actionic_woocat_settings_contentincludes\woocat_settings.php:358
actionproduct-settings-listincludes\woocat_settings.php:436
actionlisting_design_settings_startincludes\woocat_settings.php:444
actionpage_design_settings_startincludes\woocat_settings.php:453
filteris_ic_catalog_admin_pageincludes\woocat_settings.php:474
actionafter_setup_themewoocommerce-catalog-booster.php:24
actionadmin_initwoocommerce-catalog-booster.php:45
actionadmin_enqueue_scriptswoocommerce-catalog-booster.php:55
actionbefore_woocommerce_initwoocommerce-catalog-booster.php:106
Maintenance & Trust

Catalog Booster & Product Catalog Mode for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 3, 2025
PHP min version
Downloads79K

Community Trust

Rating50/100
Number of ratings4
Active installs1K
Developer Profile

Catalog Booster & Product Catalog Mode for WooCommerce Developer Profile

Andrei

182 plugins · 216K total installs

72
trust score
Avg Security Score
90/100
Avg Patch Time
647 days
View full developer profile
Detection Fingerprints

How We Detect Catalog Booster & Product Catalog Mode for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/catalog-booster-for-woocommerce/css/woocat-admin.min.css

HTML / DOM Fingerprints

CSS Classes
ic_cat-activation-wizardic-pointer-opened
Data Attributes
data-pointer-id
JS Globals
ic_show_next_pointer
FAQ

Frequently Asked Questions about Catalog Booster & Product Catalog Mode for WooCommerce