Easy Digital Downloads – Frontend Submissions Product Details Security & Risk Analysis

wordpress.org/plugins/easy-digital-downloads-frontend-submissions-product-details-widget

Specify and display frontend submission data as "product details" in a widget.

60 active installs v1.0.3 PHP + WP 3.6+ Updated May 10, 2022
downloadseasy-digital-downloadsproduct-detailswidget
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Digital Downloads – Frontend Submissions Product Details Safe to Use in 2026?

Generally Safe

Score 85/100

Easy Digital Downloads – Frontend Submissions Product Details has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The plugin "easy-digital-downloads-frontend-submissions-product-details-widget" v1.0.3 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events indicates a very limited attack surface. Furthermore, the code does not utilize dangerous functions, performs file operations, or make external HTTP requests, all of which are positive security indicators. All SQL queries are prepared, and there are no recorded vulnerabilities or CVEs in its history, suggesting a well-maintained and secure codebase. However, the static analysis did identify that 26% of output operations are not properly escaped (19 total outputs, 74% properly escaped). While the current taint analysis shows no issues, this could become a concern if any of the unescaped outputs were to handle user-supplied data. The complete lack of capability checks and nonce checks across all entry points, while not a direct vulnerability in this case due to the zero attack surface, represents a potential area for future risks if new entry points were introduced without proper authorization mechanisms. Overall, this plugin appears to be very secure due to its limited functionality and lack of historical vulnerabilities. The primary area for improvement lies in ensuring all output is properly escaped to proactively mitigate potential cross-site scripting vulnerabilities.

Key Concerns

  • Output not properly escaped
  • No capability checks
  • No nonce checks
Vulnerabilities
None known

Easy Digital Downloads – Frontend Submissions Product Details Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Easy Digital Downloads – Frontend Submissions Product Details Release Timeline

v1.0.3Current
v1.0.2
v1.0.1
v1.0
Code Analysis
Analyzed Mar 16, 2026

Easy Digital Downloads – Frontend Submissions Product Details Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
14 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

74% escaped19 total outputs
Attack Surface

Easy Digital Downloads – Frontend Submissions Product Details Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionfes_add_field_to_common_form_elementedd-fes-product-details.php:75
actionwidgets_initedd-fes-product-details.php:76
actionplugins_loadededd-fes-product-details.php:103
actionsave_postwidget.php:30
actiondeleted_postwidget.php:31
actionswitch_themewidget.php:32
Maintenance & Trust

Easy Digital Downloads – Frontend Submissions Product Details Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedMay 10, 2022
PHP min version
Downloads14K

Community Trust

Rating100/100
Number of ratings1
Active installs60
Developer Profile

Easy Digital Downloads – Frontend Submissions Product Details Developer Profile

Astoundify

10 plugins · 22K total installs

81
trust score
Avg Security Score
90/100
Avg Patch Time
31 days
View full developer profile
Detection Fingerprints

How We Detect Easy Digital Downloads – Frontend Submissions Product Details

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
widget_edd_fpdedd-fpd
Data Attributes
data-type="label"
FAQ

Frequently Asked Questions about Easy Digital Downloads – Frontend Submissions Product Details