
Checkout Field Visibility for eCommerce Security & Risk Analysis
wordpress.org/plugins/checkout-field-visibility-for-woocommerceAllows for the hiding of billing and shipping fields, based on the relevant conditional rule set(s) defined.
Is Checkout Field Visibility for eCommerce Safe to Use in 2026?
Generally Safe
Score 95/100Checkout Field Visibility for eCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin 'checkout-field-visibility-for-woocommerce' v1.5.0 presents a mixed security posture. While the static analysis indicates a lack of critical taint flows and dangerous functions, significant concerns arise from its unprotected attack surface and poor output escaping. The presence of 7 unprotected AJAX handlers opens the door to potential unauthorized actions or information disclosure. Furthermore, a mere 4% of outputs being properly escaped is a substantial weakness, increasing the risk of cross-site scripting (XSS) vulnerabilities. The vulnerability history, with one critical 'PHP Remote File Inclusion' CVE, is a stark warning, especially given its recent discovery. While it is currently unpatched, this indicates a recurring pattern of severe vulnerabilities in the past, suggesting a need for rigorous and consistent security practices. The plugin's strengths lie in its absence of bundled libraries and limited file operations, but these are overshadowed by the critical risks identified in its entry points and output handling.
Key Concerns
- Unprotected AJAX handlers
- Low percentage of properly escaped output
- 1 critical CVE, recently discovered
- SQL queries without prepared statements
- Missing capability checks
Checkout Field Visibility for eCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Checkout Field Visibility for WooCommerce <= 1.3.0 - Unauthenticated Local File Inclusion
Checkout Field Visibility for eCommerce Code Analysis
SQL Query Safety
Output Escaping
Checkout Field Visibility for eCommerce Attack Surface
AJAX Handlers 10
WordPress Hooks 51
Maintenance & Trust
Checkout Field Visibility for eCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Checkout Field Visibility for eCommerce Alternatives
Remove Checkout Fields for Woocommerce
remove-default-checkout-fields-for-woocommerce
Remove Fields from woocommerce Checkout page
DHL Shipping Germany for WooCommerce
dhl-for-woocommerce
Automate e-commerce orders with Official DHL for WooCommerce. Covers DHL Paket and Deutsche Post International.
The Courier Guy Shipping for WooCommerce
the-courier-guy
This is the official WooCommerce extension to ship products using The Courier Guy.
AppScenic – Smart AI Dropshipping
appscenic
Expand your store catalogue with no upfront inventory cost. Source high-quality products from verified domestic suppliers and use AI in the process.
CDEKDelivery
cdekdelivery
Integration with CDEK delivery for your WooCommerce store.
Checkout Field Visibility for eCommerce Developer Profile
3 plugins · 80 total installs
How We Detect Checkout Field Visibility for eCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/checkout-field-visibility-for-woocommerce/css/wp-checkout-vis-fields-woo-admin.css/wp-content/plugins/checkout-field-visibility-for-woocommerce/js/wp-checkout-vis-fields-woo-admin.jsadmin/js/wp-checkout-vis-fields-woo-admin.jscheckout-field-visibility-for-woocommerce/css/wp-checkout-vis-fields-woo-admin.css?ver=checkout-field-visibility-for-woocommerce/js/wp-checkout-vis-fields-woo-admin.js?ver=HTML / DOM Fingerprints
woo_checkout_localized_object