Crusader Quotes for WooCommerce Security & Risk Analysis

wordpress.org/plugins/crusader-quotes

Crusader Quotes for WooCommerce replaces the Add to Cart button with a Request Quote workflow for products that require custom pricing.

0 active installs v1.2.6 PHP 7.4+ WP 6.0+ Updated Feb 26, 2026
estimatepricingquote-systemrequest-quotewoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Crusader Quotes for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Crusader Quotes for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "crusader-quotes" plugin version 1.2.6 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The plugin has no recorded CVEs, indicating a history of security maturity or a lack of prior discoveries. Static analysis reveals a small attack surface with all entry points properly authenticated, a significant strength. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and a high percentage of properly escaped output. The presence of nonce and capability checks further reinforces its security.

However, a single taint flow analysis identified a path with an unsanitized input. While this did not manifest as a critical or high severity issue in the taint analysis, it represents a potential area for concern and indicates that not all input is being thoroughly sanitized before being used internally within the plugin. This is the only detected weakness in the provided data. Despite this single taint flow, the overall security of the plugin appears robust, with a clear emphasis on secure coding practices.

Key Concerns

  • Taint flow with unsanitized path
Vulnerabilities
None known

Crusader Quotes for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Crusader Quotes for WooCommerce Release Timeline

v1.2.6Current
Code Analysis
Analyzed Mar 17, 2026

Crusader Quotes for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
63 escaped
Nonce Checks
4
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

98% escaped64 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<view-quote> (includes\view-quote.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Crusader Quotes for WooCommerce Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_cqdhd_submit_quotecrusader-quotes.php:33
noprivwp_ajax_cqdhd_submit_quotecrusader-quotes.php:34
WordPress Hooks 8
actionadmin_menucrusader-quotes.php:25
actionadmin_enqueue_scriptscrusader-quotes.php:26
actionwp_enqueue_scriptscrusader-quotes.php:27
actionadmin_initcrusader-quotes.php:28
filterwoocommerce_product_data_tabscrusader-quotes.php:29
actionwoocommerce_product_data_panelscrusader-quotes.php:30
actionwoocommerce_process_product_metacrusader-quotes.php:31
actionwoocommerce_single_product_summarycrusader-quotes.php:32
Maintenance & Trust

Crusader Quotes for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version7.4
Downloads209

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Crusader Quotes for WooCommerce Developer Profile

devherodigital

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Crusader Quotes for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/crusader-quotes/assets/admin.js/wp-content/plugins/crusader-quotes/assets/frontend.js
Script Paths
/wp-content/plugins/crusader-quotes/assets/admin.js/wp-content/plugins/crusader-quotes/assets/frontend.js
Version Parameters
crusader-quotes/assets/admin.js?ver=crusader-quotes/assets/frontend.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- ---------- Page Header & Logo ---------- --><!-- ---------- Bulk-delete notice ---------- --><!-- ---------- Get + reverse quotes (newest first) ---------- --><!-- ---------- Sorting (Date Submitted) ---------- -->+5 more
Data Attributes
data-cqdhd-submit-quote
JS Globals
CQDHD_QUOTE
FAQ

Frequently Asked Questions about Crusader Quotes for WooCommerce