MinMax Products Quantities Security & Risk Analysis

wordpress.org/plugins/minmax-products-quantities

Extends WooCommerce stock options by enabling set minimum/maximum product quantity per order

40 active installs v1.0.0 PHP + WP 3.5+ Updated Apr 29, 2016
maximum-product-quantityminimum-product-quantityproduct-quantityproduct-quantity-fieldwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is MinMax Products Quantities Safe to Use in 2026?

Generally Safe

Score 85/100

MinMax Products Quantities has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The minmax-products-quantities plugin version 1.0.0 presents a generally positive security posture with no recorded vulnerabilities and a clean taint analysis. The absence of identified CVEs and critical taint flows is a significant strength, suggesting a low overall risk of known exploits. The code analysis also indicates good practices in areas like SQL query handling, with 100% prepared statements, and no external HTTP requests, which are crucial for preventing common web attacks.

However, several areas raise concerns. The complete lack of nonce checks and capability checks is a major weakness, especially given the plugin's interaction with WordPress. This indicates that any entry point, if one were to be discovered or introduced, could potentially be exploited without proper authentication or authorization. Furthermore, the output escaping is alarmingly low, with only 13% of outputs properly escaped. This creates a significant risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed in a user's browser.

In conclusion, while the plugin benefits from a clean vulnerability history and secure SQL handling, the severe lack of nonce/capability checks and the pervasive issue with output escaping introduce substantial risks. These weaknesses significantly detract from its otherwise seemingly secure foundation. The absence of a broader attack surface is positive, but the identified code-level issues require immediate attention.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
  • Low output escaping (potential XSS)
  • File operations detected
Vulnerabilities
None known

MinMax Products Quantities Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

MinMax Products Quantities Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
14
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

13% escaped16 total outputs
Attack Surface

MinMax Products Quantities Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
actionwoocommerce_product_options_inventory_product_dataadk_extended_stock.php:453
actionwoocommerce_process_product_metaadk_extended_stock.php:456
actionedit_termadk_extended_stock.php:459
actioncreated_termadk_extended_stock.php:462
actionproduct_cat_edit_form_fieldsadk_extended_stock.php:465
actionproduct_cat_add_form_fieldsadk_extended_stock.php:468
actionwoocommerce_single_product_summaryadk_extended_stock.php:471
actionwoocommerce_add_to_cart_validationadk_extended_stock.php:474
actionwoocommerce_after_shop_loop_itemadk_extended_stock.php:477
actionwoocommerce_update_cart_validationadk_extended_stock.php:480
actionadmin_enqueue_scriptsadk_extended_stock.php:483
actionadmin_noticesclass\admin_message.php:15
Maintenance & Trust

MinMax Products Quantities Maintenance & Trust

Maintenance Signals

WordPress version tested4.5.33
Last updatedApr 29, 2016
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs40
Developer Profile

MinMax Products Quantities Developer Profile

advertikon

2 plugins · 50 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MinMax Products Quantities

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/minmax-products-quantities/assets/js/adk_extended_stock_product.js
Script Paths
/wp-content/plugins/minmax-products-quantities/assets/js/adk_extended_stock_product.js

HTML / DOM Fingerprints

Data Attributes
data-cat-val
FAQ

Frequently Asked Questions about MinMax Products Quantities