Export Order Items for WooCommerce Security & Risk Analysis

wordpress.org/plugins/export-order-items-for-woocommerce

Quickly export and download your WooCommerce product orders as a CSV with product, line item, order, and customer data.

1K active installs v1.0.16 PHP 7.3+ WP 3.5+ Updated Mar 6, 2026
line-itemsorder-itemsorderssaleswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Export Order Items for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Export Order Items for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 28d ago
Risk Assessment

The "export-order-items-for-woocommerce" plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs and a clean vulnerability history is a significant positive indicator. The code analysis reveals good practices in output escaping, with a high percentage of outputs properly handled. File operations are present, but without specific details, their inherent risk is difficult to gauge. The presence of nonce and capability checks, although limited, suggests an awareness of basic WordPress security principles.

However, there are areas for improvement. The fact that 50% of SQL queries are not using prepared statements is a notable concern, as this can open the door to SQL injection vulnerabilities if not handled with extreme care. While taint analysis shows no critical or high severity flows, this is contingent on the thoroughness of the analysis. The limited number of entry points (0) is excellent, but the lack of any authentication checks on these non-existent entry points is not a risk because there are no entry points in the first place. Overall, the plugin appears to be developed with security in mind, but the unaddressed SQL query vulnerability warrants attention.

Key Concerns

  • SQL queries not using prepared statements
Vulnerabilities
None known

Export Order Items for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Export Order Items for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
1 prepared
Unescaped Output
13
76 escaped
Nonce Checks
1
Capability Checks
1
File Operations
3
External Requests
0
Bundled Libraries
0

SQL Query Safety

50% prepared2 total queries

Output Escaping

85% escaped89 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
hm_xoiwc_on_init (export-order-items-for-woocommerce.php:134)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Export Order Items for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionadmin_menuexport-order-items-for-woocommerce.php:48
actionbefore_woocommerce_initexport-order-items-for-woocommerce.php:105
actioninitexport-order-items-for-woocommerce.php:133
filternocache_headersexport-order-items-for-woocommerce.php:142
actionload-plugins.phpexport-order-items-for-woocommerce.php:194
filterwoocommerce_reports_order_statusesexport-order-items-for-woocommerce.php:542
actionadmin_enqueue_scriptsexport-order-items-for-woocommerce.php:665
filterpp_wc_get_schedulable_email_reportsexport-order-items-for-woocommerce.php:677
Maintenance & Trust

Export Order Items for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 6, 2026
PHP min version7.3
Downloads30K

Community Trust

Rating94/100
Number of ratings9
Active installs1K
Developer Profile

Export Order Items for WooCommerce Developer Profile

BerryPress

9 plugins · 11K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
19 days
View full developer profile
Detection Fingerprints

How We Detect Export Order Items for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/export-order-items-for-woocommerce/css/main.css/wp-content/plugins/export-order-items-for-woocommerce/js/main.js
Script Paths
/wp-content/plugins/export-order-items-for-woocommerce/js/main.js
Version Parameters
export-order-items-for-woocommerce/css/main.css?ver=export-order-items-for-woocommerce/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
hm-xoiwc-report-settingshm-xoiwc-field-settingshm-xoiwc-order-status-settingshm-xoiwc-date-settingshm-xoiwc-submit-button
HTML Comments
Export Order Items for WooCommerceCopyright (C) 2026 BerryPressThis program is free software: you can redistribute it and/or modifyThis program is distributed in the hope that it will be useful,+16 more
Data Attributes
data-setting-namedata-field-name
JS Globals
hm_xoiwc_report_settingshm_xoiwc_field_options
FAQ

Frequently Asked Questions about Export Order Items for WooCommerce