CedCommerce Connector for Miravia Security & Risk Analysis

wordpress.org/plugins/cedcommerce-connector-for-miravia

This plugin enables seamless integration with Miravia, providing advanced features like managing products listing and order synchronization.

10 active installs v1.0.3 PHP + WP + Updated Sep 5, 2025
cedcommerce-connector-for-miraviamiravia-integration-for-woocommerce-pluginsell-on-miraviawordpress-miravia-appwordpress-miravia-plugin
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CedCommerce Connector for Miravia Safe to Use in 2026?

Generally Safe

Score 100/100

CedCommerce Connector for Miravia has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The "cedcommerce-connector-for-miravia" plugin v1.0.3 exhibits a mixed security posture. While the absence of reported CVEs and the relatively high percentage of properly escaped output suggest some good practices, several critical security concerns are evident from the static analysis. The most significant issue is the presence of three AJAX handlers that lack any authentication checks, creating a substantial attack surface for unauthorized actions. Furthermore, the sole SQL query identified is not using prepared statements, which could expose the site to SQL injection vulnerabilities. The plugin also makes external HTTP requests, and while taint analysis shows no unsanitized paths, the combination of unauthenticated entry points and potential for SQL injection warrants careful attention. The lack of vulnerability history is positive, but it does not negate the immediate risks identified in the code.

Key Concerns

  • AJAX handlers without auth checks
  • SQL query without prepared statements
  • Limited capability checks
Vulnerabilities
None known

CedCommerce Connector for Miravia Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

CedCommerce Connector for Miravia Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
7
59 escaped
Nonce Checks
8
Capability Checks
1
File Operations
1
External Requests
6
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

89% escaped66 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<ced-miravia-integration-for-woocommerce-main> (admin\partials\ced-miravia-integration-for-woocommerce-main.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

CedCommerce Connector for Miravia Attack Surface

Entry Points3
Unprotected3

AJAX Handlers 3

authwp_ajax_ced_miravia_connect_accountincludes\class-ced-miravia-integration-for-woocommerce.php:166
authwp_ajax_ced_miravia_manual_connect_accountincludes\class-ced-miravia-integration-for-woocommerce.php:167
authwp_ajax_ced_miravia_validate_iframeincludes\class-ced-miravia-integration-for-woocommerce.php:168
WordPress Hooks 25
actionadmin_noticescedcommerce-connector-for-miravia.php:107
actionadmin_initcedcommerce-connector-for-miravia.php:109
actionadmin_noticescedcommerce-connector-for-miravia.php:120
actionbefore_woocommerce_initcedcommerce-connector-for-miravia.php:136
actionplugins_loadedincludes\class-ced-miravia-integration-for-woocommerce.php:128
actionadmin_enqueue_scriptsincludes\class-ced-miravia-integration-for-woocommerce.php:142
actionadmin_enqueue_scriptsincludes\class-ced-miravia-integration-for-woocommerce.php:143
actionadmin_menuincludes\class-ced-miravia-integration-for-woocommerce.php:144
filterced_add_marketplace_menus_arrayincludes\class-ced-miravia-integration-for-woocommerce.php:145
actionrest_api_initincludes\class-ced-miravia-integration-for-woocommerce.php:146
filterwoocommerce_rest_api_get_rest_namespacesincludes\class-ced-miravia-integration-for-woocommerce.php:147
filterwoocommerce_api_permissions_in_scopeincludes\class-ced-miravia-integration-for-woocommerce.php:148
actionwoocommerce_product_options_pricingincludes\class-ced-miravia-integration-for-woocommerce.php:149
actionsave_postincludes\class-ced-miravia-integration-for-woocommerce.php:150
actionwoocommerce_variation_options_pricingincludes\class-ced-miravia-integration-for-woocommerce.php:151
actionwoocommerce_save_product_variationincludes\class-ced-miravia-integration-for-woocommerce.php:152
actionwoocommerce_process_shop_order_metaincludes\class-ced-miravia-integration-for-woocommerce.php:155
actionadd_meta_boxesincludes\class-ced-miravia-integration-for-woocommerce.php:156
filtermanage_edit-shop_order_columnsincludes\class-ced-miravia-integration-for-woocommerce.php:157
filterwoocommerce_shop_order_list_table_columnsincludes\class-ced-miravia-integration-for-woocommerce.php:158
actionmanage_shop_order_posts_custom_columnincludes\class-ced-miravia-integration-for-woocommerce.php:159
actionmanage_woocommerce_page_wc-orders_custom_columnincludes\class-ced-miravia-integration-for-woocommerce.php:160
filterwoocommerce_product_data_tabsincludes\class-ced-miravia-integration-for-woocommerce.php:163
actionwoocommerce_product_data_panelsincludes\class-ced-miravia-integration-for-woocommerce.php:164
actionwoocommerce_process_product_metaincludes\class-ced-miravia-integration-for-woocommerce.php:165
Maintenance & Trust

CedCommerce Connector for Miravia Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 5, 2025
PHP min version
Downloads427

Community Trust

Rating0/100
Number of ratings0
Active installs10
Alternatives

CedCommerce Connector for Miravia Alternatives

No alternatives data available yet.

Developer Profile

CedCommerce Connector for Miravia Developer Profile

cedcommerce

21 plugins · 5K total installs

67
trust score
Avg Security Score
83/100
Avg Patch Time
204 days
View full developer profile
Detection Fingerprints

How We Detect CedCommerce Connector for Miravia

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cedcommerce-connector-for-miravia/admin/css/ced-miravia-integration-for-woocommerce-admin.css/wp-content/plugins/cedcommerce-connector-for-miravia/admin/js/ced-miravia-integration-for-woocommerce-admin.js
Version Parameters
cedcommerce-connector-for-miravia/admin/css/ced-miravia-integration-for-woocommerce-admin.css?ver=cedcommerce-connector-for-miravia/admin/js/ced-miravia-integration-for-woocommerce-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
ced_miravia_integration
FAQ

Frequently Asked Questions about CedCommerce Connector for Miravia