
Eselt Security & Risk Analysis
wordpress.org/plugins/eselt-ebay-amazon-multichannelEasily connect your WooCommerce store with the Eselt app to easily sync and manage products across WooCommerce, eBay, and Amazon.
Is Eselt Safe to Use in 2026?
Generally Safe
Score 100/100Eselt has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "eselt-ebay-amazon-multichannel" plugin v1.3.1 exhibits a generally good security posture with a significant majority of its code adhering to best practices. The plugin demonstrates a strong commitment to secure coding by using prepared statements for 91% of its SQL queries and properly escaping 96% of its outputs. The absence of dangerous functions and recorded vulnerabilities in its history further indicates a well-maintained and potentially secure codebase. The plugin also includes nonce checks and capability checks, which are crucial for preventing common WordPress attacks.
However, a critical concern arises from the static analysis of the plugin's attack surface. It exposes one REST API route without any permission callbacks. This means that any authenticated user, or potentially even unauthenticated users depending on the server configuration, could interact with this endpoint, which could lead to unintended actions or data exposure if not properly handled within the endpoint's logic. While taint analysis did not reveal any immediate unsanitized paths, the presence of an unprotected REST API endpoint creates a significant potential entry point for attackers.
In conclusion, while the plugin has many strengths, particularly in its handling of database queries and output, the single unprotected REST API route is a notable weakness that needs immediate attention. This oversight could be exploited to compromise the security of the WordPress site. Addressing this single, but critical, vulnerability is paramount to improving the plugin's overall security.
Key Concerns
- REST API route without permission callback
Eselt Security Vulnerabilities
Eselt Code Analysis
SQL Query Safety
Output Escaping
Eselt Attack Surface
REST API Routes 1
WordPress Hooks 34
Maintenance & Trust
Eselt Maintenance & Trust
Maintenance Signals
Community Trust
Eselt Alternatives
LitCommerce: Multi-channel Selling Tool For WooCommerce
litcommerce
Bulk List/Sync your WooCommerce Products and Orders with biggest online marketplaces like Amazon, eBay, Etsy, TikTok Shop, Walmart, Facebook Shop, Goo …
POKY – Product Importer
poky-product-importer
POKY enables WooCommerce merchants to import products from 28+ platforms to your store
WP-Lister Lite for Amazon
wp-lister-for-amazon
List products from WordPress on Amazon.
Sellbrite
sellbrite
Helps you easily integrate your WooCommerce store with Sellbrite, a GoDaddy brand.
Marketplace Integration for Shopee & Lazada
marketplace-integration-for-shopee-and-lazada
Sell on Shopee and Lazada from a single integration. Access real-time data syncing, simplified inventory, and order management to scale your business.
Eselt Developer Profile
1 plugin · 20 total installs
How We Detect Eselt
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/eselt-ebay-amazon-multichannel/assets/css/admin-styles.css/wp-content/plugins/eselt-ebay-amazon-multichannel/assets/js/admin-scripts.js/wp-content/plugins/eselt-ebay-amazon-multichannel/assets/css/eselt-frontend.css/wp-content/plugins/eselt-ebay-amazon-multichannel/assets/js/admin-scripts.jseselt-ebay-amazon-multichannel/assets/css/admin-styles.css?ver=eselt-ebay-amazon-multichannel/assets/js/admin-scripts.js?ver=eselt-ebay-amazon-multichannel/assets/css/eselt-frontend.css?ver=HTML / DOM Fingerprints
eselt-admin-noticeeselt-setup-progress<!-- Eselt Admin notices --><!-- Eselt Setup Progress --><!-- Eselt REST API: Version Endpoint -->data-eselt-plugin-versioneselt_plugin_vars/wc/v3/eselt/v1/version