Easy Digital Downloads – Pricing Select Security & Risk Analysis

wordpress.org/plugins/easy-digital-downloads-pricing-select

A simple extension for Easy Digital Downloads which converts the display of variable priced products from radio/checkboxes to a dropdown.

10 active installs v1.0.1 PHP + WP 3.0+ Updated Feb 4, 2026
dropdowneasy-digital-downloadseddpricingvariable-pricing
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Digital Downloads – Pricing Select Safe to Use in 2026?

Generally Safe

Score 100/100

Easy Digital Downloads – Pricing Select has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The static analysis of 'easy-digital-downloads-pricing-select' v1.0.1 reveals a generally strong security posture. The plugin exhibits no apparent entry points through AJAX, REST API, shortcodes, or cron events, meaning the attack surface is effectively zero. Furthermore, it demonstrates good practices in its code signals, with no dangerous functions, all SQL queries utilizing prepared statements, and no file operations or external HTTP requests. The absence of any recorded vulnerabilities in its history is also a very positive indicator of developer diligence and a well-maintained codebase. However, the analysis does show a weakness in output escaping, with 33% of outputs not being properly escaped, which could lead to potential cross-site scripting (XSS) vulnerabilities if user-supplied data is involved in these unescaped outputs. Additionally, the complete lack of nonce checks and capability checks, while not immediately risky given the zero attack surface, represents a missed opportunity to implement robust security controls that would be essential if any entry points were introduced in future versions.

Key Concerns

  • Unescaped output detected
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Easy Digital Downloads – Pricing Select Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Easy Digital Downloads – Pricing Select Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

67% escaped6 total outputs
Attack Surface

Easy Digital Downloads – Pricing Select Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actionedd_purchase_link_topedd-pricing-select.php:65
actionplugins_loadededd-pricing-select.php:140
actionadmin_noticesincludes\class.extension-activation.php:69
Maintenance & Trust

Easy Digital Downloads – Pricing Select Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 4, 2026
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Easy Digital Downloads – Pricing Select Developer Profile

DigitalME

20 plugins · 140K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
3200 days
View full developer profile
Detection Fingerprints

How We Detect Easy Digital Downloads – Pricing Select

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-digital-downloads-pricing-select/assets/css/style.css/wp-content/plugins/easy-digital-downloads-pricing-select/assets/js/edd-pricing-select.js
Script Paths
/wp-content/plugins/easy-digital-downloads-pricing-select/assets/js/edd-pricing-select.js
Version Parameters
easy-digital-downloads-pricing-select/assets/css/style.css?ver=easy-digital-downloads-pricing-select/assets/js/edd-pricing-select.js?ver=

HTML / DOM Fingerprints

CSS Classes
edd_price_optionsedd_price_option_
Data Attributes
name="edd_options[price_id][]"
FAQ

Frequently Asked Questions about Easy Digital Downloads – Pricing Select