
REPORTiT – Advanced Reporting for WooCommerce Security & Risk Analysis
wordpress.org/plugins/ithemelandco-woo-reportStop guessing. Grow your sales with powerful, easy-to-understand reports and analytics for WooCommerce.
Is REPORTiT – Advanced Reporting for WooCommerce Safe to Use in 2026?
Generally Safe
Score 98/100REPORTiT – Advanced Reporting for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "ithemelandco-woo-report" plugin v3.1.0 presents a mixed security posture. On the positive side, the code demonstrates strong adherence to secure coding practices, with all SQL queries utilizing prepared statements and an extremely high percentage of outputs being properly escaped. The absence of critical or high severity taint flows is also a significant strength. However, the presence of two AJAX handlers without authentication checks introduces a direct and concerning attack vector. The plugin's vulnerability history, while currently showing no unpatched issues, reveals a pattern of past vulnerabilities including Cross-Site Request Forgery and Cross-Site Scripting, indicating a need for ongoing vigilance. The last vulnerability was recently discovered, further emphasizing this point. The bundled libraries, DataTables and Select2, could potentially introduce risks if they are outdated or contain known vulnerabilities, though this is not explicitly detailed in the provided data. Overall, while the core code is well-secured in many aspects, the unprotected AJAX endpoints and past vulnerability history warrant careful consideration and mitigation.
Key Concerns
- AJAX handlers without authentication checks
- Past vulnerabilities (CSRF, XSS)
- Bundled libraries (potential risk)
REPORTiT – Advanced Reporting for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
WooCommerce Report <= 1.5.1 - Cross-Site Request Forgery to Arbitrary Options Update
WooCommerce Report <= 1.4.5 - Reflected Cross-Site Scripting
REPORTiT – Advanced Reporting for WooCommerce Release Timeline
REPORTiT – Advanced Reporting for WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
REPORTiT – Advanced Reporting for WooCommerce Attack Surface
AJAX Handlers 34
WordPress Hooks 105
Maintenance & Trust
REPORTiT – Advanced Reporting for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
REPORTiT – Advanced Reporting for WooCommerce Alternatives
WooReports — Advanced Reporting for WooCommerce
wc-reports-lite
Free sales reports for WooCommerce — 11 report modules including orders, products, stock, tax, coupons and payment gateways. No API key needed.
Advanced Woocommerce Reporting and Insights – Smart Product Sales Reporting
charty-custom-smart-analytics
Charty Analytics adds a modern, performance-focused WooCommerce analytics dashboard inside wp-admin with advanced reporting, insights, and actionable …
Smart Reporter For WooCommerce and WP eCommerce
smart-reporter-for-wp-e-commerce
A phenomenal plugin that solves all your business related issues, from business analysis to reporting on your WooCommerce and WordPress eCommerce site …
Dashboard and Analytics for WooCommerce
dashboard-and-analytics-for-woocommerce
The ultimate analytics dashboard for WooCommerce. See sales, orders, and reports at a glance. A simple, clean, and powerful analytics solution.
HexReport – Powerful report analytics for WooCommerce
hexreport-sales-analytics-for-woocommerce
HexReport is a powerful report analytics WordPress plugin designed to give store owner insightful and real-time analytics of their store.
REPORTiT – Advanced Reporting for WooCommerce Developer Profile
9 plugins · 5K total installs
How We Detect REPORTiT – Advanced Reporting for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ithemelandco-woo-report/assets/css/owl.carousel.min.css/wp-content/plugins/ithemelandco-woo-report/assets/css/buttons.dataTables.css/wp-content/plugins/ithemelandco-woo-report/assets/css/daterangepicker.css/wp-content/plugins/ithemelandco-woo-report/assets/css/jquery.tipsy.css/wp-content/plugins/ithemelandco-woo-report/assets/css/sweetalert2.min.css/wp-content/plugins/ithemelandco-woo-report/assets/css/select2.min.css/wp-content/plugins/ithemelandco-woo-report/assets/css/datatables.min.css/wp-content/plugins/ithemelandco-woo-report/assets/css/bootstrap-icons.min.css+11 more/wp-content/plugins/ithemelandco-woo-report/assets/js/data.js/wp-content/plugins/ithemelandco-woo-report/assets/js/owl.carousel.min.js/wp-content/plugins/ithemelandco-woo-report/assets/js/daterangepicker.min.js/wp-content/plugins/ithemelandco-woo-report/assets/js/jquery.tipsy.js/wp-content/plugins/ithemelandco-woo-report/assets/js/sweetalert2.all.min.js/wp-content/plugins/ithemelandco-woo-report/assets/js/select2.min.jsithemelandco-woo-report/assets/css/owl.carousel.min.css?ver=ithemelandco-woo-report/assets/css/buttons.dataTables.css?ver=ithemelandco-woo-report/assets/css/daterangepicker.css?ver=ithemelandco-woo-report/assets/css/jquery.tipsy.css?ver=ithemelandco-woo-report/assets/css/sweetalert2.min.css?ver=ithemelandco-woo-report/assets/css/select2.min.css?ver=ithemelandco-woo-report/assets/css/datatables.min.css?ver=ithemelandco-woo-report/assets/css/bootstrap-icons.min.css?ver=ithemelandco-woo-report/assets/css/bootstrap.min.css?ver=ithemelandco-woo-report/assets/css/skeleton.css?ver=ithemelandco-woo-report/assets/css/style.css?ver=ithemelandco-woo-report/assets/css/responsive.css?ver=ithemelandco-woo-report/assets/css/rtl.css?ver=ithemelandco-woo-report/assets/js/data.js?ver=ithemelandco-woo-report/assets/js/owl.carousel.min.js?ver=ithemelandco-woo-report/assets/js/daterangepicker.min.js?ver=ithemelandco-woo-report/assets/js/jquery.tipsy.js?ver=ithemelandco-woo-report/assets/js/sweetalert2.all.min.js?ver=ithemelandco-woo-report/assets/js/select2.min.js?ver=HTML / DOM Fingerprints
iwrasl-carouseliwrasl-daterangepicker-buttonsiwrasl-daterangepickeriwrasl-tipsyiwrasl-sweetalert2iwrasl-select2iwrasl-datatablesiwrasl-bootstrap-icons+5 more<!-- Compatible with woocommerce custom order tables -->data-target="#collapseExample"data-toggle="collapse"data-bs-target="#collapseWidthExample"aria-expanded="false"aria-controls="collapseExample"aria-controls="collapseWidthExample"IWRASL_DATA