ELEX Minimum Order Amount for WooCommerce Security & Risk Analysis

wordpress.org/plugins/elex-minimum-order-amount-for-woocommerce

ELEX WooCommerce Minimum Order Amount plugin helps you to configure minimum and maximum order amount based on WordPress user roles.

300 active installs v2.0.7 PHP 5.6+ WP 3.0.1+ Updated Feb 2, 2026
checkout-restrictionminimum-orderminimum-order-amountrole-based-restrictionwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ELEX Minimum Order Amount for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

ELEX Minimum Order Amount for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "elex-minimum-order-amount-for-woocommerce" plugin version 2.0.7 exhibits a generally strong security posture based on the provided static analysis. The absence of any recorded vulnerabilities (CVEs) and a clean taint analysis indicate a history of secure development and a lack of critical exploitable flaws. The plugin also demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping nearly all output, minimizing common attack vectors like SQL injection and cross-site scripting (XSS). The presence of nonce checks on its AJAX handlers further strengthens its defense against common web attacks.

However, a notable concern is the complete lack of capability checks on its AJAX handlers. While nonce checks prevent unauthorized requests from being submitted, they do not restrict which user roles can actually *execute* the AJAX actions. This means that even authenticated users without appropriate permissions could potentially trigger these actions, leading to unintended consequences or privilege escalation if the AJAX handlers perform sensitive operations. The bundled Select2 library also presents a potential, albeit minor, risk if it is an outdated version, as libraries can introduce vulnerabilities. Overall, the plugin is well-secured with a strong emphasis on preventing direct exploits, but the absence of granular permission checks on its entry points warrants attention.

Key Concerns

  • No capability checks on AJAX handlers
  • Bundled library (Select2) may be outdated
Vulnerabilities
None known

ELEX Minimum Order Amount for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

ELEX Minimum Order Amount for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
2
95 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

100% prepared2 total queries

Output Escaping

98% escaped97 total outputs
Attack Surface

ELEX Minimum Order Amount for WooCommerce Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 4

authwp_ajax_fetch_products_by_categoryincludes\elex-wccr-frontend-template.php:30
noprivwp_ajax_fetch_products_by_categoryincludes\elex-wccr-frontend-template.php:31
authwp_ajax_fetch_users_by_roleincludes\elex-wccr-frontend-template.php:33
noprivwp_ajax_fetch_users_by_roleincludes\elex-wccr-frontend-template.php:34
WordPress Hooks 13
actioninitelex-minimum-order-amount-for-woocommerce.php:54
actionadmin_menuelex-minimum-order-amount-for-woocommerce.php:61
actionadmin_initelex-minimum-order-amount-for-woocommerce.php:64
actionbefore_woocommerce_initelex-minimum-order-amount-for-woocommerce.php:114
filterwoocommerce_settings_tabs_arrayincludes\elex-wccr-frontend-template.php:23
filterwoocommerce_sections_elex-wccrincludes\elex-wccr-frontend-template.php:24
filterwoocommerce_settings_elex-wccrincludes\elex-wccr-frontend-template.php:26
actionwoocommerce_update_options_elex-wccrincludes\elex-wccr-frontend-template.php:28
actionwoocommerce_admin_field_checkoutrestrictiontableincludes\elex-wccr-frontend-template.php:29
actionwoocommerce_check_cart_itemsincludes\elex-wccr-restrict-logic.php:10
actionwoocommerce_proceed_to_checkoutincludes\elex-wccr-restrict-logic.php:250
actionadmin_noticesreview_and_troubleshoot_notify\review-and-troubleshoot-notify-class.php:20
actionadmin_initreview_and_troubleshoot_notify\review-and-troubleshoot-notify-class.php:21
Maintenance & Trust

ELEX Minimum Order Amount for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 2, 2026
PHP min version5.6
Downloads23K

Community Trust

Rating0/100
Number of ratings0
Active installs300
Developer Profile

ELEX Minimum Order Amount for WooCommerce Developer Profile

ELEXtensions

22 plugins · 28K total installs

87
trust score
Avg Security Score
98/100
Avg Patch Time
53 days
View full developer profile
Detection Fingerprints

How We Detect ELEX Minimum Order Amount for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/elex-minimum-order-amount-for-woocommerce/review_and_troubleshoot_notify/review-and-troubleshoot-notify-class.php/wp-content/plugins/elex-minimum-order-amount-for-woocommerce/includes/elex-wccr-frontend-template.php/wp-content/plugins/elex-minimum-order-amount-for-woocommerce/includes/elex-wccr-restrict-logic.php

HTML / DOM Fingerprints

CSS Classes
elex-wccr-checkout-restriction-settings
Data Attributes
data-tabdata-section
JS Globals
window.elex_wccr_ajax_object
REST Endpoints
/wp-json/elex-wccr/v1/settings
FAQ

Frequently Asked Questions about ELEX Minimum Order Amount for WooCommerce