
User Admin Purchases Column for Easy Digital Downloads Security & Risk Analysis
wordpress.org/plugins/edd-user-admin-purchases-columnSee basic statistics of customers for the Easy Digital Downloads e-commerce plugin.
Is User Admin Purchases Column for Easy Digital Downloads Safe to Use in 2026?
Generally Safe
Score 100/100User Admin Purchases Column for Easy Digital Downloads has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security analysis of "edd-user-admin-purchases-column" v1.0.6 indicates a generally good security posture with no immediately obvious critical vulnerabilities identified in the static analysis or vulnerability history. The absence of identified CVEs and the lack of dangerous functions or file operations are positive signs. The plugin also demonstrates responsible use of prepared statements for SQL queries.
However, a significant concern arises from the output escaping analysis. With three total outputs and zero properly escaped, this presents a high risk of Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data displayed on the frontend or admin area could potentially be injected with malicious scripts, leading to session hijacking or other attacks. The lack of nonce checks and capability checks, while not directly flagged as issues in this specific analysis, are important security mechanisms that should be considered for any plugin with user interaction points, especially if the attack surface were to expand.
Given the current data, the primary risk lies in the unescaped output. While the plugin has a clean vulnerability history, the potential for XSS due to improper output sanitization is a serious concern that needs immediate attention. Developers should prioritize implementing proper escaping functions for all output to mitigate this risk.
Key Concerns
- 0% of outputs are properly escaped
User Admin Purchases Column for Easy Digital Downloads Security Vulnerabilities
User Admin Purchases Column for Easy Digital Downloads Code Analysis
Output Escaping
User Admin Purchases Column for Easy Digital Downloads Attack Surface
WordPress Hooks 5
Maintenance & Trust
User Admin Purchases Column for Easy Digital Downloads Maintenance & Trust
Maintenance Signals
Community Trust
User Admin Purchases Column for Easy Digital Downloads Alternatives
EDD Metrics
edd-metrics
Better reports for Easy Digital Downloads, similar to Baremetrics.
Easy Digital Downloads – Geckoboard
edd-geckoboard
Allow site owners to display EDD statistics through Geckoboard
Easy Digital Downloads Free Link
easy-digital-downloads-free-link
replace EDD add-to-cart button with download link when product is free
EDD Auto Register
edd-auto-register
Automatically creates a WP user account at checkout, based on customer's email address.
Easy Digital Downloads Featured Downloads
edd-featured-downloads
Easily feature your downloads
User Admin Purchases Column for Easy Digital Downloads Developer Profile
18 plugins · 82K total installs
How We Detect User Admin Purchases Column for Easy Digital Downloads
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
edd-uapc