Free Products Catalog Security & Risk Analysis

wordpress.org/plugins/free-products-catalog

You can show your products to customers for free! Great plugin with elastic options to display catalog, single products with meta data, images, descri …

0 active installs v1.1.0 PHP 7.3+ WP 5.9.3+ Updated May 18, 2022
catalogfreegridproducts
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Free Products Catalog Safe to Use in 2026?

Generally Safe

Score 85/100

Free Products Catalog has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The free-products-catalog v1.1.0 plugin exhibits a generally good security posture based on the provided static analysis. The absence of known vulnerabilities in its history, along with no identified critical or high-severity taint flows, suggests a history of secure development. The code also demonstrates strong adherence to secure coding practices by utilizing prepared statements for all SQL queries and avoiding dangerous functions, file operations, and external HTTP requests. However, the analysis does raise concerns regarding output escaping, with 36% of outputs not being properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is present in these unescaped outputs. The lack of any identified entry points like AJAX handlers, REST API routes, or shortcodes, while reducing the attack surface, also means the plugin has limited functionality exposed in a typical WordPress environment. Despite the excellent historical security and low-risk taint analysis, the unescaped output is the primary area of concern requiring attention.

Key Concerns

  • Significant unescaped output detected
Vulnerabilities
None known

Free Products Catalog Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Free Products Catalog Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
27
47 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

64% escaped74 total outputs
Attack Surface

Free Products Catalog Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actionwp_enqueue_scriptswebites-product-catalog.php:22
actionadmin_enqueue_scriptswebites-product-catalog.php:29
actioninitwebites-product-catalog.php:47
actioninitwebites-product-catalog.php:68
actioninitwebites-product-catalog.php:88
filtersingle_templatewebites-product-catalog.php:97
filtertaxonomy_templatewebites-product-catalog.php:127
filtertaxonomy_templatewebites-product-catalog.php:135
filtertaxonomy_templatewebites-product-catalog.php:146
filtertaxonomy_templatewebites-product-catalog.php:158
actionadd_meta_boxeswebites-product-catalog.php:185
actionsave_postwebites-product-catalog.php:267
actionadmin_initwebites-product-catalog.php:298
actionadmin_menuwebites-product-catalog.php:300
Maintenance & Trust

Free Products Catalog Maintenance & Trust

Maintenance Signals

WordPress version tested5.9.13
Last updatedMay 18, 2022
PHP min version7.3
Downloads864

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Free Products Catalog Developer Profile

Łukasz Gołąbek

3 plugins · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Free Products Catalog

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/free-products-catalog/public/css/style.css/wp-content/plugins/free-products-catalog/css/style.css

HTML / DOM Fingerprints

CSS Classes
wrap
Data Attributes
wb_products_colorswb_products_dimwb_products_skuwb_products_serieswb_products_typewb_products_price+1 more
FAQ

Frequently Asked Questions about Free Products Catalog