
SysBasics Customize My Account for WooCommerce Security & Risk Analysis
wordpress.org/plugins/customize-my-account-for-woocommerceOptimize your WooCommerce My account page also add new endpoints and manage existing endpoints with ease.
Is SysBasics Customize My Account for WooCommerce Safe to Use in 2026?
Generally Safe
Score 98/100SysBasics Customize My Account for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The "customize-my-account-for-woocommerce" plugin v3.8.7 exhibits a mixed security posture. While it demonstrates strong practices such as 100% prepared SQL statements and a comprehensive 12 nonce checks, significant concerns arise from its attack surface. A substantial 8 out of 13 total entry points, specifically AJAX handlers, lack authentication checks, presenting a high risk of unauthorized actions or information disclosure. The static analysis also reveals a worrying 34% of output escaping, which indicates a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is not properly handled.
The plugin's vulnerability history, with 3 known medium severity CVEs historically related to XSS and CSRF, reinforces the concern about input sanitization and output escaping. Although there are currently no unpatched vulnerabilities, the pattern suggests a recurring need for developers to address these specific security weaknesses. The inclusion of bundled libraries like Select2 and jQuery v3.4.1, while common, also warrants attention for potential outdated vulnerabilities if not regularly updated. Overall, the plugin has foundational security measures in place but requires immediate attention to its unprotected entry points and output sanitization practices to mitigate significant risks.
Key Concerns
- 8 unprotected AJAX handlers
- 34% of outputs properly escaped
- 3 past medium CVEs (XSS/CSRF)
- Bundled outdated jQuery v3.4.1
SysBasics Customize My Account for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
SysBasics Customize My Account for WooCommerce <= 2.8.22 - Reflected Cross-Site Scripting
SysBasics Customize My Account for WooCommerce <= 2.7.29 - Reflected Cross-Site Scripting via tab Parameter
Customize My Account for WooCommerce <= 1.8.3 - Cross-Site Request Forgery via restore_my_account_tabs
SysBasics Customize My Account for WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
SysBasics Customize My Account for WooCommerce Attack Surface
AJAX Handlers 11
Shortcodes 2
WordPress Hooks 51
Maintenance & Trust
SysBasics Customize My Account for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
SysBasics Customize My Account for WooCommerce Alternatives
Customize My Account Page For WooCommerce
customize-my-account-page
Customize the default WooCommerce My Account Page. Add unlimited menu tabs, manage endpoints & display personalized content in the customer dashboard.
CITS My Account Customize for WooCommerce
my-account-customize-for-wp
Customize your WooCommerce 'My Account' page with ease! Adjust menus, pick designs, and enhance user experience effortlessly.
My Account Page Lite for Divi
my-account-page-lite-for-divi
Easily style the WooCommerce My Account Page using Divi Builder. Add icons, rename tabs, and create a branded customer experience.
My Account Menu Builder for WooCommerce
my-account-menu-builder-for-woocommerce
The easiest way to customize the WooCommerce My Account page menu — drag & drop, custom pages, icons, badges, role-based visibility, and more.
SDP My Account Tabs for WooCommerce
sdp-my-account-tabs-for-woocommerce
Customize WooCommerce My Account with custom tabs and dynamic user data — including any WordPress user meta key.
SysBasics Customize My Account for WooCommerce Developer Profile
3 plugins · 9K total installs
How We Detect SysBasics Customize My Account for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/customize-my-account-for-woocommerce/assets/images/placeholder.png/wp-content/plugins/customize-my-account-for-woocommerce/assets/js/wcmamtx-admin-script.js/wp-content/plugins/customize-my-account-for-woocommerce/assets/css/wcmamtx-admin-style.css/wp-content/plugins/customize-my-account-for-woocommerce/assets/css/wcmamtx-frontend.csscustomize-my-account-for-woocommerce/assets/js/wcmamtx-admin-script.js?ver=customize-my-account-for-woocommerce/assets/css/wcmamtx-admin-style.css?ver=customize-my-account-for-woocommerce/assets/css/wcmamtx-frontend.css?ver=HTML / DOM Fingerprints
wcmamtx-menu-itemdata-wcmamtx-sectionwcmamtx_object