LH Woocommerce Invoicing Security & Risk Analysis

wordpress.org/plugins/lh-woocommerce-invoicing

Adds membership functionality to LH Teams.

0 active installs v1.03 PHP + WP 5.0+ Updated Jul 31, 2022
invoiceinvoicingorderorderswoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is LH Woocommerce Invoicing Safe to Use in 2026?

Generally Safe

Score 85/100

LH Woocommerce Invoicing has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "lh-woocommerce-invoicing" plugin version 1.03 exhibits a strong security posture based on the provided static analysis. The absence of any detected AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface, and importantly, all identified entry points appear to be protected. The code also demonstrates good practices by utilizing prepared statements for all SQL queries, avoiding dangerous functions, and conducting file operations or external HTTP requests. The presence of nonce and capability checks further enhances its security.

Key Concerns

  • Low percentage of properly escaped output
Vulnerabilities
None known

LH Woocommerce Invoicing Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

LH Woocommerce Invoicing Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
13
3 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

19% escaped16 total outputs
Attack Surface

LH Woocommerce Invoicing Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadd_meta_boxeslh-woocommerce-invoicing.php:161
actionsave_postlh-woocommerce-invoicing.php:164
filterwoocommerce_email_subject_customer_invoicelh-woocommerce-invoicing.php:167
filterwoocommerce_email_heading_customer_invoicelh-woocommerce-invoicing.php:171
actionwoocommerce_email_order_metalh-woocommerce-invoicing.php:174
actionwoocommerce_initlh-woocommerce-invoicing.php:206
Maintenance & Trust

LH Woocommerce Invoicing Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJul 31, 2022
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

LH Woocommerce Invoicing Developer Profile

shawfactor

77 plugins · 15K total installs

91
trust score
Avg Security Score
87/100
Avg Patch Time
7 days
View full developer profile
Detection Fingerprints

How We Detect LH Woocommerce Invoicing

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
lh_woocommerce_invoicing-subject-prompt-textlh_woocommerce_invoicing-subjectlh_woocommerce_invoicing-heading-prompt-textlh_woocommerce_invoicing-headinglh_woocommerce_invoicing-message-prompt-textlh_woocommerce_invoicing-message
Data Attributes
id="lh_woocommerce_invoicing-subject-prompt-text"for="lh_woocommerce_invoicing-subject"id="lh_woocommerce_invoicing-subject"name="lh_woocommerce_invoicing-subject"id="lh_woocommerce_invoicing-heading-prompt-text"for="lh_woocommerce_invoicing-heading"+7 more
FAQ

Frequently Asked Questions about LH Woocommerce Invoicing