
Sitewide Discount for WooCommerce: Apply Discount to All Products Security & Risk Analysis
wordpress.org/plugins/global-shop-discount-for-woocommerceAdd global shop discount to all WooCommerce products. Beautifully.
Is Sitewide Discount for WooCommerce: Apply Discount to All Products Safe to Use in 2026?
Generally Safe
Score 99/100Sitewide Discount for WooCommerce: Apply Discount to All Products has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin 'global-shop-discount-for-woocommerce' v2.2.4 exhibits a generally good security posture based on the static analysis. The absence of dangerous functions, properly escaped output, and the use of prepared statements for SQL queries are positive indicators. Furthermore, the lack of external HTTP requests and file operations reduces potential attack vectors. However, there are some areas of concern, particularly the complete absence of nonce checks and capability checks. This could leave the plugin vulnerable to CSRF attacks or privilege escalation if certain functionalities are exposed through its entry points without proper authorization verification.
The plugin's vulnerability history shows one known CVE, which is reportedly patched. The common vulnerability type, Cross-Site Scripting, in the past suggests that improper input sanitization could be a recurring issue if not diligently addressed. While the current static analysis did not reveal any taint flows, the historical pattern warrants caution, and thorough testing of all user-supplied inputs is recommended.
In conclusion, the plugin demonstrates good development practices in many areas. The lack of obvious critical flaws in the current code analysis is encouraging. Nevertheless, the absence of nonce and capability checks represents a significant weakness that needs attention. The historical XSS vulnerability also suggests a need for continued vigilance in input validation and output sanitization to ensure robust security.
Key Concerns
- Missing nonce checks
- Missing capability checks
- Past XSS vulnerability history
Sitewide Discount for WooCommerce: Apply Discount to All Products Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Sitewide Discount for WooCommerce: Apply Discount to All Products <= 2.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
Sitewide Discount for WooCommerce: Apply Discount to All Products Code Analysis
Output Escaping
Sitewide Discount for WooCommerce: Apply Discount to All Products Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Sitewide Discount for WooCommerce: Apply Discount to All Products Maintenance & Trust
Maintenance Signals
Community Trust
Sitewide Discount for WooCommerce: Apply Discount to All Products Alternatives
Manage Discount in Admin Orders for WooCommerce
manage-discount-in-admin-orders-for-woocommerce
This plugin allows you to manage discounts in WooCommerce orders placed in the backoffice.
Alkubot – Gamify discounts, sell more and give less at the right time
alkubot
The negotiator chatbot that sells your product to hesitant visitors.
Notification WooCommerce
notification-woocommerce
The easy and ultimate solution for notifiaction that lets your customer set notification for product availablity and/or discount.
WooCommerce PayPal Payments
woocommerce-paypal-payments
PayPal's latest payment processing solution. Accept PayPal, Pay Later, credit/debit cards, alternative digital wallets and bank accounts.
Mollie Payments for WooCommerce
mollie-payments-for-woocommerce
Accept all major payment methods in WooCommerce today. Credit cards, iDEAL and more! Fast, safe and intuitive.
Sitewide Discount for WooCommerce: Apply Discount to All Products Developer Profile
63 plugins · 136K total installs
How We Detect Sitewide Discount for WooCommerce: Apply Discount to All Products
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/global-shop-discount-for-woocommerce/assets/css/frontend.min.css/wp-content/plugins/global-shop-discount-for-woocommerce/assets/js/frontend.min.js/wp-content/plugins/global-shop-discount-for-woocommerce/assets/js/frontend.min.jsglobal-shop-discount-for-woocommerce/assets/css/frontend.min.css?ver=global-shop-discount-for-woocommerce/assets/js/frontend.min.js?ver=HTML / DOM Fingerprints
alg-wc-gsd-products-shortcodealg_wc_gsd_productsalg_wc_global_shop_discount_frontend_params[alg_wc_gsd_products]