Custom Related Products for WooCommerce Security & Risk Analysis

wordpress.org/plugins/custom-related-products-for-woocommerce

Custom Related Products for WooCommerce lets you choose which products should show in the related products area on a product detail page.

5K active installs v1.4 PHP + WP 3.0+ Updated Sep 4, 2025
related-productswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Custom Related Products for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Custom Related Products for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The static analysis of the "custom-related-products-for-woocommerce" plugin v1.4 reveals a generally strong security posture. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with exposed entry points significantly limits the attack surface. Furthermore, the complete reliance on prepared statements for SQL queries and the presence of nonce and capability checks are excellent security practices. The plugin also demonstrates a commitment to output escaping, with a majority of outputs being properly handled.

However, the analysis indicates that 37% of output escaping is not properly handled. While this percentage might not be high enough to represent a critical vulnerability on its own, it represents a potential weakness that could be exploited if combined with other factors or specific data flows. The lack of identified vulnerabilities in the plugin's history is a positive sign, suggesting a well-maintained and secure codebase. The plugin's strengths lie in its minimal attack surface and robust handling of sensitive operations like database queries. Its primary weakness, as indicated by the static analysis, is the incomplete output escaping.

Key Concerns

  • Unescaped output detected
Vulnerabilities
None known

Custom Related Products for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Custom Related Products for WooCommerce Release Timeline

v1.4Current
v1.3
v1.2
v1.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

Custom Related Products for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
10 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

63% escaped16 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
crp_settings_page (woocommerce-custom-related-products.php:182)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Custom Related Products for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
filterwoocommerce_product_related_posts_force_displaywoocommerce-custom-related-products.php:25
filterwoocommerce_product_related_posts_relate_by_categorywoocommerce-custom-related-products.php:44
filterwoocommerce_product_related_posts_relate_by_tagwoocommerce-custom-related-products.php:45
actionwoocommerce_product_options_relatedwoocommerce-custom-related-products.php:101
actionwoocommerce_process_product_metawoocommerce-custom-related-products.php:128
filterwoocommerce_related_products_argswoocommerce-custom-related-products.php:150
filterwoocommerce_product_related_posts_querywoocommerce-custom-related-products.php:168
actionadmin_menuwoocommerce-custom-related-products.php:177
Maintenance & Trust

Custom Related Products for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 4, 2025
PHP min version
Downloads64K

Community Trust

Rating96/100
Number of ratings33
Active installs5K
Developer Profile

Custom Related Products for WooCommerce Developer Profile

Scott Nelle

4 plugins · 5K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom Related Products for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/custom-related-products-for-woocommerce/assets/css/custom-related-products-for-woocommerce.css/wp-content/plugins/custom-related-products-for-woocommerce/assets/js/custom-related-products-for-woocommerce.js
Script Paths
/wp-content/plugins/custom-related-products-for-woocommerce/assets/js/custom-related-products-for-woocommerce.js
Version Parameters
custom-related-products-for-woocommerce/assets/css/custom-related-products-for-woocommerce.css?ver=custom-related-products-for-woocommerce/assets/js/custom-related-products-for-woocommerce.js?ver=

HTML / DOM Fingerprints

CSS Classes
wc-product-search
Data Attributes
data-placeholderdata-actiondata-exclude
REST Endpoints
/wp-json/wc/v3/products
FAQ

Frequently Asked Questions about Custom Related Products for WooCommerce