
Free Woocommerce Product Table View – Woo Table Pro Security & Risk Analysis
wordpress.org/plugins/free-product-table-for-woocommerceFree WooCommerce Product Table View - Woo Table Pro is the plugin you need to ist your WooCommerce products in a table. With many fields available, yo …
Is Free Woocommerce Product Table View – Woo Table Pro Safe to Use in 2026?
High Risk
Score 43/100Free Woocommerce Product Table View – Woo Table Pro carries significant security risk with 2 known CVEs, 2 still unpatched. Consider switching to a maintained alternative.
The free-product-table-for-woocommerce plugin exhibits a concerning security posture primarily due to a large number of unprotected AJAX handlers. While the static analysis shows no dangerous functions or SQL injection vulnerabilities (all queries use prepared statements), the lack of authorization checks on 8 out of 9 entry points creates a significant attack surface. This means any authenticated user, regardless of their role, could potentially trigger these AJAX actions, leading to unintended consequences or information disclosure.
The code signals also reveal a worrying trend in output escaping, with only 27% of outputs being properly escaped. This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, where attackers could inject malicious scripts into the site via user-controlled input processed by the plugin. The absence of nonce checks on AJAX handlers further exacerbates this risk by making Cross-Site Request Forgery (CSRF) attacks more feasible.
The vulnerability history of 2 unpatched medium severity CVEs, both identified as missing authorization, reinforces the critical need for robust access control. The plugin's pattern of known authorization issues indicates a recurring oversight in securing its functionalities. While the absence of critical or high severity vulnerabilities in the history and the proper use of prepared statements for SQL are positive, the combination of unprotected entry points, poor output escaping, and a history of authorization flaws presents a significant risk.
Key Concerns
- Unprotected AJAX handlers
- Low output escaping percentage
- Missing nonce checks on AJAX
- Missing capability checks
- Unpatched CVEs (2 medium)
Free Woocommerce Product Table View – Woo Table Pro Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Free Woocommerce Product Table View <= 1.78 - Missing Authorization to Arbitrary Content Deletion
Free Woocommerce Product Table View <= 1.78 - Missing Authorization
Free Woocommerce Product Table View – Woo Table Pro Code Analysis
Output Escaping
Free Woocommerce Product Table View – Woo Table Pro Attack Surface
AJAX Handlers 8
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
Free Woocommerce Product Table View – Woo Table Pro Maintenance & Trust
Maintenance Signals
Community Trust
Free Woocommerce Product Table View – Woo Table Pro Alternatives
Active Products Tables for WooCommerce. Use constructor to create tables
profit-products-tables-for-woocommerce
WooCommerce Active Products Tables - is the WooCommerce Products Table plugin displaying shop products in table format
Product Table for WooCommerce – Add Multiple Products to Cart
multiple-products-to-cart-for-woocommerce
A truly lightweight EASY to use and super FAST WooCommerce product table solution to add multiple products to cart at once.
Product Table and List Builder for WooCommerce Lite
wc-product-table-lite
Show your WooCommerce products in beautiful table and list layout with ease. Improves shopping experience for your customers and increases sales.
Product Table for WooCommerce
woo-product-table
Helps you to display your products in a searchable table layout with filters.
Product Table for WooCommerce by WBW
woo-product-tables
Show your products in the searchable and sortable product table. WooCommerce product listings and flexible order forms with WBW Product Table
Free Woocommerce Product Table View – Woo Table Pro Developer Profile
7 plugins · 3K total installs
How We Detect Free Woocommerce Product Table View – Woo Table Pro
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/free-product-table-for-woocommerce/assets/css/frontend.css/wp-content/plugins/free-product-table-for-woocommerce/assets/js/frontend.js/wp-content/plugins/free-product-table-for-woocommerce/assets/js/admin.js/wp-content/plugins/free-product-table-for-woocommerce/assets/css/admin.css/wp-content/plugins/free-product-table-for-woocommerce/assets/js/frontend.js/wp-content/plugins/free-product-table-for-woocommerce/assets/js/admin.jsfree-product-table-for-woocommerce/assets/css/frontend.css?ver=free-product-table-for-woocommerce/assets/js/frontend.js?ver=free-product-table-for-woocommerce/assets/js/admin.js?ver=free-product-table-for-woocommerce/assets/css/admin.css?ver=HTML / DOM Fingerprints
pfw-add-to-cartpfw-product-tablepfw-table-actionspfw-filter-wrapper<!-- PFW_START_SHORTCODE --><!-- PFW_END_SHORTCODE -->data-pfw-table-idpfw_ajax_object[pfw_products_table