
e-Commerce Multi Currency Support Security & Risk Analysis
wordpress.org/plugins/e-commerce-multi-currency-supporte-Commerce Multi Currency support is a Add-on Currency Widget that allows your customers to view prices of products and Cart in the Currency they desi …
Is e-Commerce Multi Currency Support Safe to Use in 2026?
Generally Safe
Score 85/100e-Commerce Multi Currency Support has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'e-commerce-multi-currency-support' plugin v0.8 exhibits a mixed security posture. While it demonstrates good practices by utilizing prepared statements for all SQL queries and has no recorded historical vulnerabilities, several concerning signals are present. The use of the `create_function` is a significant red flag, as it is deprecated and can be a source of security vulnerabilities if not handled with extreme care, potentially leading to arbitrary code execution. Furthermore, the taint analysis revealing two flows with unsanitized paths, marked as high severity, is a critical concern. These flows likely indicate potential injection vulnerabilities that could be exploited if data from these paths is not properly validated and sanitized before being used. The extremely low percentage of properly escaped output (2%) suggests a widespread risk of Cross-Site Scripting (XSS) vulnerabilities across various output points. The absence of nonce checks and capability checks, coupled with the lack of authentication on any identified entry points (though the entry point count is zero), implies that if any entry points were discovered or introduced, they would be susceptible to unauthorized actions. Overall, the plugin has strengths in its database interaction but weaknesses in output handling, potential injection vectors, and the use of outdated, dangerous functions.
Key Concerns
- Use of create_function()
- High severity unsanitized taint flows
- Poor output escaping
- No nonce checks
- No capability checks
e-Commerce Multi Currency Support Security Vulnerabilities
e-Commerce Multi Currency Support Release Timeline
e-Commerce Multi Currency Support Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
e-Commerce Multi Currency Support Attack Surface
WordPress Hooks 9
Maintenance & Trust
e-Commerce Multi Currency Support Maintenance & Trust
Maintenance Signals
Community Trust
e-Commerce Multi Currency Support Alternatives
Ecwid by Lightspeed Ecommerce Shopping Cart
ecwid-shopping-cart
Powerful, easy to use ecommerce shopping cart for WordPress. Sell on Facebook and Instagram. iPhone & Android apps. Superb support.
Welcart e-Commerce
usc-e-shop
Welcart is a free e-commerce plugin for Wordpress with top market share in Japan.
Product Slider and Carousel with Category for WooCommerce
woo-product-slider-and-carousel-with-category
WooCommerce Product, Best Selling Product, Featured Product Slider/Carousel with category. Also work with Gutenberg shortcode block.
Shopping Cart & eCommerce Store
wp-easycart
A FREE WordPress eCommerce & WordPress Shopping Cart plugin that can sell products, subscriptions, downloads, services, donations, and much more o …
Recently Viewed Product for WooCommerce
recently-viewed-products-for-woocommerce
Recently Viewed Products for WooCommerce Listing page, you can easily add recently viewed product section by activate the plugin.
e-Commerce Multi Currency Support Developer Profile
1 plugin · 10 total installs
How We Detect e-Commerce Multi Currency Support
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/e-commerce-multi-currency-support/widgets/currency_chooser_widget.phpe-commerce-multi-currency-support/wpsc-currency-changer.php?ver=e-commerce-multi-currency-support/widgets/currency_chooser_widget.php?ver=HTML / DOM Fingerprints
wpsc_cartWPSC_TABLE_CURRENCY_LIST