Import Products to OK.ru Security & Risk Analysis

wordpress.org/plugins/import-products-to-ok-ru

Exports products from your online store to ok.ru. Connect your store to OK.ru and unload products, getting new customers!

10 active installs v2.0.4 PHP 5.6+ WP 4.7+ Updated Mar 3, 2024
exportodnoklassnikiok-ruproductswoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Import Products to OK.ru Safe to Use in 2026?

Generally Safe

Score 85/100

Import Products to OK.ru has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'import-products-to-ok-ru' v2.0.4 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of known CVEs, coupled with a lack of critical or high-severity taint flows, is highly encouraging. The plugin also demonstrates good practices by using prepared statements for all SQL queries and implementing nonce and capability checks on some of its operations. However, there are areas for improvement that warrant attention. The presence of unsanitized paths in 5 out of 11 analyzed flows, though not reaching a critical or high severity in taint analysis, suggests a potential for path traversal vulnerabilities if these flows are exposed to user-controlled input without further sanitization. Additionally, the fact that 45% of output is not properly escaped is a significant concern, as it can lead to Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into the user interface. The presence of file operations and external HTTP requests without clear indications of sanitization or authorization checks also warrants further investigation.

Key Concerns

  • Unsanitized paths in taint flows
  • Significant percentage of unescaped output
Vulnerabilities
None known

Import Products to OK.ru Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Import Products to OK.ru Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
45
56 escaped
Nonce Checks
4
Capability Checks
3
File Operations
3
External Requests
2
Bundled Libraries
0

Output Escaping

55% escaped101 total outputs
Data Flows
5 unsanitized

Data Flow Analysis

11 flows5 with unsanitized paths
the_form (classes\system\class-ip2ok-plugin-form-activate.php:51)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Import Products to OK.ru Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 34
actionparse_requestclasses\generation\class-ip2ok-ok-ru-api.php:81
actionadmin_initclasses\generation\class-ip2ok-ok-ru-api.php:82
actionmy_admin_noticesclasses\system\class-ip2ok-debug-page.php:389
actionmy_admin_noticesclasses\system\class-ip2ok-debug-page.php:409
actionadmin_noticesclasses\system\class-ip2ok-feedback.php:173
filterwp_mail_content_typeclasses\system\class-ip2ok-feedback.php:225
filterpre_site_transient_update_pluginsclasses\system\class-ip2ok-plugin-form-activate.php:147
filterpre_set_site_transient_update_pluginsclasses\system\class-ip2ok-plugin-upd.php:82
filterplugins_apiclasses\system\class-ip2ok-plugin-upd.php:84
filterupgrader_package_optionsclasses\system\class-ip2ok-plugin-upd.php:86
filterplugin_action_linksclasses\system\class-ip2ok-plugin-upd.php:87
actionadmin_noticesclasses\system\class-ip2ok-plugin-upd.php:188
actionadmin_noticesclasses\system\class-ip2ok-plugin-upd.php:212
actionadmin_print_footer_scriptsclasses\system\class-ip2ok-settings-page.php:464
actionadmin_footerclasses\system\class-ip2ok-wp-list-table.php:50
actionadmin_initclasses\system\class-ip2ok.php:102
actionadmin_initclasses\system\class-ip2ok.php:103
actionadmin_menuclasses\system\class-ip2ok.php:106
actionip2ok_cron_sborkiclasses\system\class-ip2ok.php:110
actionip2ok_cron_periodclasses\system\class-ip2ok.php:111
actionedit_form_after_titleclasses\system\class-ip2ok.php:112
actionsave_postclasses\system\class-ip2ok.php:113
filtercron_schedulesclasses\system\class-ip2ok.php:115
filterplugin_action_linksclasses\system\class-ip2ok.php:116
filterwoocommerce_product_data_tabsclasses\system\class-ip2ok.php:120
actionwoocommerce_product_data_panelsclasses\system\class-ip2ok.php:121
actionadmin_noticesclasses\system\class-ip2ok.php:175
actionadmin_noticesclasses\system\class-ip2ok.php:184
actionadmin_noticesclasses\system\class-ip2ok.php:211
actionadmin_noticesimport-products-to-ok-ru.php:33
actionadmin_noticesimport-products-to-ok-ru.php:53
actionbefore_woocommerce_initimport-products-to-ok-ru.php:65
actionplugins_loadedimport-products-to-ok-ru.php:123
actionplugins_loadedimport-products-to-ok-ru.php:132

Scheduled Events 2

ip2ok_cron_period
ip2ok_cron_sborki
Maintenance & Trust

Import Products to OK.ru Maintenance & Trust

Maintenance Signals

WordPress version tested6.4.8
Last updatedMar 3, 2024
PHP min version5.6
Downloads3K

Community Trust

Rating100/100
Number of ratings4
Active installs10
Developer Profile

Import Products to OK.ru Developer Profile

icopydoc

14 plugins · 16K total installs

75
trust score
Avg Security Score
94/100
Avg Patch Time
102 days
View full developer profile
Detection Fingerprints

How We Detect Import Products to OK.ru

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/import-products-to-ok-ru/packages/widget.css/wp-content/plugins/import-products-to-ok-ru/assets/css/admin.css/wp-content/plugins/import-products-to-ok-ru/assets/js/admin.js
Script Paths
/wp-content/plugins/import-products-to-ok-ru/packages/widget.js
Version Parameters
import-products-to-ok-ru/packages/widget.css?ver=import-products-to-ok-ru/assets/css/admin.css?ver=import-products-to-ok-ru/packages/widget.js?ver=import-products-to-ok-ru/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
ip2ok_widget
HTML Comments
<!-- widget -->
JS Globals
ip2ok_widget_config
FAQ

Frequently Asked Questions about Import Products to OK.ru