Logicrays WP Product Count Down Security & Risk Analysis

wordpress.org/plugins/logicrays-wp-product-count-down

LR Product Countdown allows you to set counter in the product pages

0 active installs v1.0 PHP + WP 3.3+ Updated Apr 27, 2018
count-woocommercee-commercelrproductsthemes
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Logicrays WP Product Count Down Safe to Use in 2026?

Generally Safe

Score 85/100

Logicrays WP Product Count Down has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The plugin "logicrays-wp-product-count-down" v1.0 presents a mixed security posture. On the positive side, it avoids dangerous functions, uses prepared statements exclusively for SQL queries, and has no recorded vulnerability history, which suggests a generally responsible development approach regarding known external threats.

However, significant concerns arise from the static analysis. The plugin exposes a considerable attack surface through four AJAX handlers that lack authentication checks. This could allow unauthenticated users to trigger potentially harmful actions. Furthermore, a substantial portion of output (62%) is not properly escaped, increasing the risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is rendered directly in the browser.

While the lack of historical CVEs is a good sign, it doesn't negate the immediate risks identified in the current code. The combination of unprotected AJAX endpoints and insufficient output escaping forms a concerning pattern that warrants immediate attention and remediation to strengthen the plugin's security.

Key Concerns

  • Unprotected AJAX handlers
  • Significant portion of unescaped output
Vulnerabilities
None known

Logicrays WP Product Count Down Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Logicrays WP Product Count Down Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
32
20 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

38% escaped52 total outputs
Attack Surface
4 unprotected

Logicrays WP Product Count Down Attack Surface

Entry Points6
Unprotected4

AJAX Handlers 4

authwp_ajax_count_down_mail1.0\wooCommerce-product-count-down.php:66
noprivwp_ajax_count_down_mail1.0\wooCommerce-product-count-down.php:67
authwp_ajax_count_down_mailwooCommerce-product-count-down.php:66
noprivwp_ajax_count_down_mailwooCommerce-product-count-down.php:67

Shortcodes 2

[LR_Count_Down_Product] 1.0\wooCommerce-product-count-down.php:319
[LR_Count_Down_Product] wooCommerce-product-count-down.php:319
WordPress Hooks 18
actionadmin_init1.0\admin\lr-wp-product-count-down.php:3
actionadmin_menu1.0\admin\lr-wp-product-count-down.php:4
filterwoocommerce_product_data_tabs1.0\wooCommerce-product-count-down.php:22
actionadmin_enqueue_scripts1.0\wooCommerce-product-count-down.php:53
actionget_footer1.0\wooCommerce-product-count-down.php:55
actionwoocommerce_product_data_panels1.0\wooCommerce-product-count-down.php:69
actionwoocommerce_process_product_meta_simple1.0\wooCommerce-product-count-down.php:176
actionwoocommerce_process_product_meta_variable1.0\wooCommerce-product-count-down.php:178
actionwoocommerce_before_single_product1.0\wooCommerce-product-count-down.php:322
actionadmin_initadmin\lr-wp-product-count-down.php:3
actionadmin_menuadmin\lr-wp-product-count-down.php:4
filterwoocommerce_product_data_tabswooCommerce-product-count-down.php:22
actionadmin_enqueue_scriptswooCommerce-product-count-down.php:53
actionget_footerwooCommerce-product-count-down.php:55
actionwoocommerce_product_data_panelswooCommerce-product-count-down.php:69
actionwoocommerce_process_product_meta_simplewooCommerce-product-count-down.php:176
actionwoocommerce_process_product_meta_variablewooCommerce-product-count-down.php:178
actionwoocommerce_before_single_productwooCommerce-product-count-down.php:322
Maintenance & Trust

Logicrays WP Product Count Down Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedApr 27, 2018
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Logicrays WP Product Count Down Developer Profile

LogicRays Technologies

15 plugins · 290 total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Logicrays WP Product Count Down

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/logicrays-wp-product-count-down/css/jquery.datetimepicker.css/wp-content/plugins/logicrays-wp-product-count-down/js/jquery.datetimepicker.full.js/wp-content/plugins/logicrays-wp-product-count-down/js/lr_admin_custom.js/wp-content/plugins/logicrays-wp-product-count-down/js/custom-script.js/wp-content/plugins/logicrays-wp-product-count-down/js/lr_front_custom.js/wp-content/plugins/logicrays-wp-product-count-down/css/lr_front_counter.css
Script Paths
/wp-content/plugins/logicrays-wp-product-count-down/js/jquery.datetimepicker.full.js/wp-content/plugins/logicrays-wp-product-count-down/js/lr_admin_custom.js/wp-content/plugins/logicrays-wp-product-count-down/js/custom-script.js/wp-content/plugins/logicrays-wp-product-count-down/js/lr_front_custom.js
Version Parameters
logicrays-wp-product-count-down/css/jquery.datetimepicker.css?ver=logicrays-wp-product-count-down/js/jquery.datetimepicker.full.js?ver=logicrays-wp-product-count-down/js/lr_admin_custom.js?ver=logicrays-wp-product-count-down/js/custom-script.js?ver=logicrays-wp-product-count-down/js/lr_front_custom.js?ver=logicrays-wp-product-count-down/css/lr_front_counter.css?ver=

HTML / DOM Fingerprints

CSS Classes
lr-count-down-tab_options
Data Attributes
id='lr_count_down_product_data'
JS Globals
count_down_mail
FAQ

Frequently Asked Questions about Logicrays WP Product Count Down