Connect WooCommerce to ActiveCampaign by EqualServing Security & Risk Analysis

wordpress.org/plugins/es-woocommerce-activecampaign

Easily add ActiveCampaign integration to WooCommerce.

1K active installs v2.1.11 PHP 5.3+ WP 4.4+ Updated Sep 10, 2025
activecampaignwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Connect WooCommerce to ActiveCampaign by EqualServing Safe to Use in 2026?

Generally Safe

Score 100/100

Connect WooCommerce to ActiveCampaign by EqualServing has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The "es-woocommerce-activecampaign" plugin v2.1.11 presents a mixed security picture. On the positive side, there are no reported CVEs, no dangerous functions, and all SQL queries utilize prepared statements, indicating good practices in these areas. The lack of recorded vulnerabilities and common vulnerability types suggests a potentially stable codebase. However, the static analysis reveals significant concerns regarding output escaping, with only 17% of outputs being properly escaped. This leaves the plugin susceptible to Cross-Site Scripting (XSS) attacks, as unescaped user-controlled data could be rendered directly in the browser. Furthermore, the absence of nonce checks and capability checks for any potential entry points, combined with a lack of taint analysis results, raises questions about the thoroughness of the security review. While the attack surface appears minimal and unprotected entry points are reported as zero, the insufficient output escaping is a critical weakness that needs immediate attention.

Key Concerns

  • Low percentage of properly escaped output
  • No nonce checks implemented
  • No capability checks implemented
  • Taint analysis not performed/reported
Vulnerabilities
None known

Connect WooCommerce to ActiveCampaign by EqualServing Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Connect WooCommerce to ActiveCampaign by EqualServing Release Timeline

v2.1.11Current
v2.1.10
v2.1.9
v2.1.8
v2.1.7
v2.1.6
v2.1.5
v2.1.4
v2.1.3
v2.1.2
v2.1.1
v2.1
v2.0.3
v2.0.2
v2.0.1
v2.0
v1.9.15
v1.9.14
v1.9.13
v1.9.12
Code Analysis
Analyzed Mar 16, 2026

Connect WooCommerce to ActiveCampaign by EqualServing Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
20
4 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
10
Bundled Libraries
0

Output Escaping

17% escaped24 total outputs
Attack Surface

Connect WooCommerce to ActiveCampaign by EqualServing Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actionadmin_noticesclass-es-wc-integration-activecampaign.php:97
actionwoocommerce_checkout_update_order_metaclass-es-wc-integration-activecampaign.php:102
actionwoocommerce_order_status_changedclass-es-wc-integration-activecampaign.php:105
actionwoocommerce_before_order_notesclass-es-wc-integration-activecampaign.php:110
actionwoocommerce_review_order_before_submitclass-es-wc-integration-activecampaign.php:112
actionwoocommerce_after_order_notesclass-es-wc-integration-activecampaign.php:114
actionwoocommerce_checkout_update_order_metaclass-es-wc-integration-activecampaign.php:120
actionwoocommerce_admin_order_data_after_billing_addressclass-es-wc-integration-activecampaign.php:123
actionplugins_loadedes-woocommerce-activecampaign.php:14
actionbefore_woocommerce_inites-woocommerce-activecampaign.php:15
filterwoocommerce_integrationses-woocommerce-activecampaign.php:28
actionin_plugin_update_message-es-woocommerce-activecampaign/es-woocommerce-activecampaign.phpes-woocommerce-activecampaign.php:65
Maintenance & Trust

Connect WooCommerce to ActiveCampaign by EqualServing Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 10, 2025
PHP min version5.3
Downloads50K

Community Trust

Rating86/100
Number of ratings6
Active installs1K
Developer Profile

Connect WooCommerce to ActiveCampaign by EqualServing Developer Profile

equalserving

1 plugin · 1K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Connect WooCommerce to ActiveCampaign by EqualServing

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/es-woocommerce-activecampaign/includes/js/es-wc-activecampaign.js/wp-content/plugins/es-woocommerce-activecampaign/css/es-wc-activecampaign.css
Script Paths
/wp-content/plugins/es-woocommerce-activecampaign/includes/js/es-wc-activecampaign.js
Version Parameters
es-woocommerce-activecampaign/includes/js/es-wc-activecampaign.js?ver=es-woocommerce-activecampaign/css/es-wc-activecampaign.css?ver=

HTML / DOM Fingerprints

CSS Classes
es-wc-activecampaign-opt-in
HTML Comments
<!-- ActiveCampaign Integration --><!-- Connect WooCommerce to ActiveCampaign by EqualServing -->
Data Attributes
data-es-wc-activecampaign-opt-in-position
FAQ

Frequently Asked Questions about Connect WooCommerce to ActiveCampaign by EqualServing