Designious Library Lumise Add-on for WooCommerce Security & Risk Analysis

wordpress.org/plugins/designious-library-setup

Get access to the Designious Library, over 20.000 vector svg design assets. Create print on demand products like t-shirts, mugs, posters and more.

100 active installs v1.0.0 PHP 7.0+ WP 4.7+ Updated Jan 28, 2021
design-libraryecommercegraphic-designlumisewoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Designious Library Lumise Add-on for WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Designious Library Lumise Add-on for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The 'designious-library-setup' plugin v1.0.0 exhibits a generally good security posture in terms of its attack surface and lack of known historical vulnerabilities. The absence of AJAX handlers, REST API routes, shortcodes, and cron events, especially those without authentication checks, significantly reduces potential entry points for attackers. The code also demonstrates good practice by exclusively using prepared statements for all SQL queries, mitigating the risk of SQL injection. Furthermore, the plugin includes nonce and capability checks, which are fundamental security mechanisms.

However, a significant concern arises from the output escaping. With 4 total outputs and 0% properly escaped, this indicates a high likelihood of cross-site scripting (XSS) vulnerabilities. Any data rendered to the user without proper sanitization can be manipulated by attackers to inject malicious scripts. While taint analysis shows no critical or high-severity flows, the lack of output escaping is a direct and significant vulnerability that needs immediate attention. The file operations, though not inherently problematic without further context, could also pose a risk if not handled with extreme care, especially if they involve user-controlled input.

In conclusion, the plugin's strengths lie in its minimal attack surface and responsible SQL handling. Its main weakness, and the most critical finding, is the complete lack of output escaping, presenting a clear risk of XSS. The absence of historical vulnerabilities is positive, but it does not negate the immediate risks identified in the static analysis. Addressing the output escaping issue should be the top priority.

Key Concerns

  • 0% output escaping
Vulnerabilities
None known

Designious Library Lumise Add-on for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Designious Library Lumise Add-on for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
0 escaped
Nonce Checks
2
Capability Checks
2
File Operations
5
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped4 total outputs
Attack Surface

Designious Library Lumise Add-on for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menudesignious-library-setup.php:23
actionadmin_headdesignious-library-setup.php:24
actionadmin_enqueue_scriptsdesignious-library-setup.php:25
actionadmin_print_styles-designious-library_page_designious_library_setupdesignious-library-setup.php:26
actionadmin_initdesignious-library-setup.php:30
Maintenance & Trust

Designious Library Lumise Add-on for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedJan 28, 2021
PHP min version7.0
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Designious Library Lumise Add-on for WooCommerce Developer Profile

designious

1 plugin · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Designious Library Lumise Add-on for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/designious-library-setup/src/assets/css/admin.css
Version Parameters
designious-library-setup/src/assets/css/admin.css?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Designious Library Lumise Add-on for WooCommerce