Eraclito Limit Product Quantity Security & Risk Analysis

wordpress.org/plugins/eraclito-limit-product-quantity

Limita la quantità massima acquistabile di un prodotto per ordine e avvisa l'utente se viene raggiunto il limite.

0 active installs v2.0.1 PHP 7.4+ WP 5.8+ Updated Jan 31, 2026
max-quantityproductwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Eraclito Limit Product Quantity Safe to Use in 2026?

Generally Safe

Score 100/100

Eraclito Limit Product Quantity has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "eraclito-limit-product-quantity" plugin v2.0.1 exhibits a strong security posture based on the provided static analysis. The absence of any identifiable attack surface points, dangerous functions, raw SQL queries, file operations, external HTTP requests, or bundled libraries is highly commendable. Furthermore, the 100% output escaping and the single taint flow with an unsanitized path, which thankfully did not result in critical or high severity, suggest diligent coding practices. The plugin's vulnerability history is also clean, with no recorded CVEs, indicating a lack of past security issues.

While the plugin appears robust, the presence of a single taint flow with an unsanitized path, even if of low severity, is a point of concern. This suggests a potential, albeit minor, avenue for unexpected behavior or data handling. The complete lack of nonce checks and capability checks, while potentially acceptable given the zero-attack-surface finding, could become a concern if functionality were to be added in the future that introduced such points. Overall, this plugin is very well-secured, with minimal theoretical risks identified in the static analysis.

Key Concerns

  • Taint flow with unsanitized path found
  • No nonce checks found
  • No capability checks found
Vulnerabilities
None known

Eraclito Limit Product Quantity Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Eraclito Limit Product Quantity Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<class-elpq-admin> (classes\class-elpq-admin.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Eraclito Limit Product Quantity Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionwoocommerce_product_options_general_product_dataclasses\class-elpq-admin.php:41
actionwoocommerce_process_product_metaclasses\class-elpq-admin.php:44
filtermanage_edit-product_columnsclasses\class-elpq-admin.php:47
actionmanage_product_posts_custom_columnclasses\class-elpq-admin.php:48
actionwp_enqueue_scriptsclasses\class-elpq-assets.php:34
actionadmin_enqueue_scriptsclasses\class-elpq-assets.php:37
filterwoocommerce_add_to_cart_validationclasses\class-elpq-cart.php:34
filterwoocommerce_add_to_cart_quantityclasses\class-elpq-cart.php:37
actionwoocommerce_check_cart_itemsclasses\class-elpq-cart.php:40
filterwoocommerce_update_cart_validationclasses\class-elpq-cart.php:43
filterwoocommerce_quantity_input_argsclasses\class-elpq-frontend.php:34
actionwoocommerce_before_add_to_cart_buttonclasses\class-elpq-frontend.php:37
actionplugins_loadederaclito-limit-product-quantity.php:73
actionplugins_loadederaclito-limit-product-quantity.php:76
actionwoocommerce_loadederaclito-limit-product-quantity.php:79
actionadmin_noticeseraclito-limit-product-quantity.php:87
Maintenance & Trust

Eraclito Limit Product Quantity Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 31, 2026
PHP min version7.4
Downloads842

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Eraclito Limit Product Quantity Developer Profile

alessio.rosi

2 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Eraclito Limit Product Quantity

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/eraclito-limit-product-quantity/assets/js/frontend.js
Script Paths
/wp-content/plugins/eraclito-limit-product-quantity/assets/js/frontend.js
Version Parameters
eraclito-limit-product-quantity/assets/js/frontend.js?ver=eraclito-limit-product-quantity.php?ver=

HTML / DOM Fingerprints

CSS Classes
elpq-noticeelpq-limit-badgeelpq-no-limit
Data Attributes
data-max_quantity
JS Globals
elpqData
FAQ

Frequently Asked Questions about Eraclito Limit Product Quantity