WC Buy Now Button Security & Risk Analysis

wordpress.org/plugins/hc-buy-now-button-for-woocommerce

WC Buy Now Button is a very useful plugin for adding a Buy Now Button in the WooCommerce Store with more functionality.

100 active installs v2.0.0 PHP 7.0+ WP 6.0+ Updated Dec 5, 2025
buy-nowbuy-now-buttonwoocommerce-buy-nowwoocommerce-buy-now-button
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WC Buy Now Button Safe to Use in 2026?

Generally Safe

Score 100/100

WC Buy Now Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The hc-buy-now-button-for-woocommerce plugin version 2.0.0 exhibits a strong security posture based on the provided static analysis. The plugin demonstrates excellent security practices by having no identified dangerous functions, no raw SQL queries (all use prepared statements), and a high percentage of properly escaped output. The absence of file operations and external HTTP requests further reduces the potential attack surface. Crucially, the analysis shows no taint flows, indicating no evident pathways for malicious data injection.

The vulnerability history is also remarkably clean, with zero known CVEs, suggesting a history of secure development or prompt patching of any past issues. The complete lack of unpatched vulnerabilities, critical or high, is a significant positive indicator. The plugin's total entry points are zero, and of those, zero are unprotected, reinforcing the impression of a well-secured codebase.

While the plugin's current security profile appears very strong, the static analysis did note a complete absence of nonce checks and capability checks. While this doesn't immediately translate to a critical vulnerability given the lack of identified entry points and taint flows, it represents a potential area for improvement. In future development, incorporating these checks, especially if new entry points are introduced, would further harden the plugin. Overall, this plugin version presents a low-risk profile.

Key Concerns

  • No nonce checks
  • No capability checks
Vulnerabilities
None known

WC Buy Now Button Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WC Buy Now Button Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
50 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

85% escaped59 total outputs
Attack Surface

WC Buy Now Button Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionadmin_menuadmin\wbn-admin.php:16
actionwoocommerce_after_add_to_cart_buttonfrontend\wcbuynow-frontend.php:19
actionwoocommerce_after_shop_loop_itemfrontend\wcbuynow-frontend.php:50
actionwp_headfrontend\wcbuynow-frontend.php:72
actionplugins_loadedwc-buy-now-button.php:30
actionadmin_enqueue_scriptswc-buy-now-button.php:66
actionwp_enqueue_scriptswc-buy-now-button.php:79
actionadmin_initwc-buy-now-button.php:92
actionadmin_noticeswc-buy-now-button.php:107
actionadmin_initwc-buy-now-button.php:113
Maintenance & Trust

WC Buy Now Button Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 5, 2025
PHP min version7.0
Downloads3K

Community Trust

Rating74/100
Number of ratings3
Active installs100
Developer Profile

WC Buy Now Button Developer Profile

Habibur Rahman

7 plugins · 2K total installs

90
trust score
Avg Security Score
94/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WC Buy Now Button

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hc-buy-now-button-for-woocommerce/js/wcbuynow-admin.js/wp-content/plugins/hc-buy-now-button-for-woocommerce/css/wbn-admin.css/wp-content/plugins/hc-buy-now-button-for-woocommerce/css/wbn-style.css
Script Paths
/wp-content/plugins/hc-buy-now-button-for-woocommerce/js/wcbuynow-admin.js
Version Parameters
wc-buy-now-button/js/wcbuynow-admin.js?ver=wc-buy-now-button/css/wbn-admin.css?ver=wc-buy-now-button/css/wbn-style.css?ver=

HTML / DOM Fingerprints

CSS Classes
wcbuynow-button
HTML Comments
<!-- Woocommerce Buy Now Button Style -->
FAQ

Frequently Asked Questions about WC Buy Now Button