Experto Dashboard for WooCommerce Security & Risk Analysis

wordpress.org/plugins/experto-custom-dashboard

Customize the appearance and functionality of your WooCommerce My Account dashboard with personalized colors, fonts, and custom content blocks.

10 active installs v1.0.1 PHP 5.6+ WP 5.5.4+ Updated Nov 4, 2025
customer-dashboardcustomizationdashboardmy-accountwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Experto Dashboard for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Experto Dashboard for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin "experto-custom-dashboard" v1.0.1 exhibits a mixed security posture. On the positive side, it demonstrates strong practices regarding SQL queries, with 100% utilizing prepared statements, and excellent output escaping, with 99% of outputs properly escaped. It also has a clean vulnerability history with no recorded CVEs, suggesting a generally well-maintained codebase. However, significant security concerns arise from its attack surface. The plugin exposes two AJAX handlers, and critically, both of these lack any authentication checks. This presents a clear risk of unauthorized access and manipulation of plugin functionality by unauthenticated users. While the taint analysis shows no critical or high-severity unsanitized flows, the presence of two flows with unsanitized paths, combined with the unprotected AJAX endpoints, warrants careful consideration as these could potentially be exploited in conjunction with other vulnerabilities or through different vectors.

Key Concerns

  • AJAX handlers without authentication
  • Flows with unsanitized paths
Vulnerabilities
None known

Experto Dashboard for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Experto Dashboard for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
133 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped134 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

3 flows2 with unsanitized paths
ewc_update_dash_item (admin\class-ewc-admin.php:319)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

Experto Dashboard for WooCommerce Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_ewc_update_dash_item_actionadmin\class-ewc-admin.php:31
noprivwp_ajax_ewc_update_dash_item_actionadmin\class-ewc-admin.php:32
WordPress Hooks 12
filtertemplate_includeadmin\class-ewc-admin.php:26
filterwoocommerce_locate_templateadmin\class-ewc-admin.php:27
filtertheme_page_templatesadmin\class-ewc-admin.php:28
actionadmin_menuadmin\class-ewc-admin.php:29
actionadmin_initadmin\class-ewc-admin.php:30
actionadmin_noticesadmin\partials\ewc-admin-settings.php:22
actionadmin_enqueue_scriptsincludes\class-ewc.php:66
actionadmin_enqueue_scriptsincludes\class-ewc.php:67
actiondeactivated_pluginincludes\class-ewc.php:68
actionwp_enqueue_scriptsincludes\class-ewc.php:76
actionwp_enqueue_scriptsincludes\class-ewc.php:77
actionwoocommerce_account_dashboardpublic\class-ewc-public.php:24
Maintenance & Trust

Experto Dashboard for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 4, 2025
PHP min version5.6
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Experto Dashboard for WooCommerce Developer Profile

UX Design Experts

4 plugins · 170 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
8 days
View full developer profile
Detection Fingerprints

How We Detect Experto Dashboard for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/experto-custom-dashboard/admin/css/ewc-admin.css/wp-content/plugins/experto-custom-dashboard/admin/js/ewc-admin.js
Script Paths
/wp-content/plugins/experto-custom-dashboard/admin/js/ewc-admin.js
Version Parameters
experto-custom-dashboard/admin/css/ewc-admin.css?ver=experto-custom-dashboard/admin/js/ewc-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
ewc-admin-menu
Data Attributes
data-plugin-name="experto-custom-dashboard"data-plugin-version="1.0.1"
JS Globals
ewcURLS
FAQ

Frequently Asked Questions about Experto Dashboard for WooCommerce