Modern Cart – WooCommerce Side Cart & Popup Cart Security & Risk Analysis

wordpress.org/plugins/modern-cart

Modern Cart gives your store a side cart and free shipping bar so shoppers stay on the page, spend more to unlock rewards, and check out in seconds.

30K active installs v1.0.7 PHP 7.4+ WP 5.4+ Updated Mar 4, 2026
cart-drawerfloating-cartfree-shipping-barpopup-cartwoocommerce-side-cart
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Modern Cart – WooCommerce Side Cart & Popup Cart Safe to Use in 2026?

Generally Safe

Score 100/100

Modern Cart – WooCommerce Side Cart & Popup Cart has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 29d ago
Risk Assessment

The 'modern-cart' plugin version 1.0.7 demonstrates a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any detected critical or high-severity taint flows, coupled with the complete adherence to prepared statements for SQL queries and proper output escaping, indicates a solid foundation of secure coding practices. Furthermore, the plugin boasts a clean vulnerability history with no known CVEs, suggesting a commitment to maintaining a secure codebase over time.

Despite the positive findings, a few areas warrant attention. The plugin has 17 AJAX handlers, and while the static analysis reports zero unprotected entry points, the sheer number of AJAX handlers could potentially increase the attack surface if not meticulously secured in future updates. Additionally, the presence of file operations and external HTTP requests, though not flagged as problematic in this analysis, are areas that inherently carry risks and require ongoing vigilance. The plugin also implements a reasonable number of nonce and capability checks, which is good, but a higher number of capability checks relative to the attack surface might further harden it.

In conclusion, 'modern-cart' v1.0.7 appears to be a well-developed plugin with a strong emphasis on security. The lack of historical vulnerabilities and robust static analysis findings are significant strengths. However, maintaining a comprehensive security review process for all entry points, especially the AJAX handlers, and carefully monitoring file operations and external requests will be crucial for sustained security.

Key Concerns

  • 17 AJAX handlers are a notable attack surface
  • File operations present potential risks
  • External HTTP requests introduce potential risks
Vulnerabilities
None known

Modern Cart – WooCommerce Side Cart & Popup Cart Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Modern Cart – WooCommerce Side Cart & Popup Cart Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
1
338 escaped
Nonce Checks
11
Capability Checks
4
File Operations
1
External Requests
3
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

100% escaped339 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<admin-menu> (admin-core\admin-menu.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Modern Cart – WooCommerce Side Cart & Popup Cart Attack Surface

Entry Points17
Unprotected0

AJAX Handlers 17

authwp_ajax_moderncart_update_settingsadmin-core\admin-menu.php:48
authwp_ajax_moderncart_fetch_whats_newadmin-core\admin-menu.php:49
authwp_ajax_moderncart_complete_onboardingadmin-core\admin-menu.php:51
authwp_ajax_moderncart_refresh_floating_cartinc\floating-ajax.php:27
noprivwp_ajax_moderncart_refresh_floating_cartinc\floating-ajax.php:28
authwp_ajax_moderncart_refresh_slide_out_cartinc\slide-out-ajax.php:29
noprivwp_ajax_moderncart_refresh_slide_out_cartinc\slide-out-ajax.php:30
authwp_ajax_moderncart_remove_productinc\slide-out-ajax.php:31
noprivwp_ajax_moderncart_remove_productinc\slide-out-ajax.php:32
authwp_ajax_moderncart_update_cartinc\slide-out-ajax.php:33
noprivwp_ajax_moderncart_update_cartinc\slide-out-ajax.php:34
authwp_ajax_moderncart_apply_couponinc\slide-out-ajax.php:35
noprivwp_ajax_moderncart_apply_couponinc\slide-out-ajax.php:36
authwp_ajax_moderncart_remove_couponinc\slide-out-ajax.php:37
noprivwp_ajax_moderncart_remove_couponinc\slide-out-ajax.php:38
authwp_ajax_moderncart_add_to_cartinc\slide-out-ajax.php:39
noprivwp_ajax_moderncart_add_to_cartinc\slide-out-ajax.php:40
WordPress Hooks 27
actionadmin_menuadmin-core\admin-menu.php:46
actionadmin_enqueue_scriptsadmin-core\admin-menu.php:47
actionwp_footerinc\floating.php:30
filterastra_cart_in_menu_classinc\floating.php:31
filterastra_get_option_woo-header-cart-click-actioninc\floating.php:32
filterastra_get_option_shop-add-to-cart-actioninc\floating.php:33
actionwp_loadedinc\floating.php:34
actionwp_enqueue_scriptsinc\scripts.php:38
actionwp_enqueue_scriptsinc\scripts.php:39
actionwp_footerinc\slide-out.php:29
actionmoderncart_slide_out_contentinc\slide-out.php:30
actionmoderncart_slide_out_contentinc\slide-out.php:31
actionmoderncart_slide_out_header_beforeinc\slide-out.php:32
actionmoderncart_slide_out_contentinc\slide-out.php:33
actionmoderncart_slide_out_footer_contentinc\slide-out.php:34
actionmoderncart_slide_out_footer_contentinc\slide-out.php:35
actionmoderncart_slide_out_cart_afterinc\slide-out.php:36
actionmoderncart_slide_out_coupon_form_afterinc\slide-out.php:37
filtercpsw_express_checkout_selected_location_statusinc\slide-out.php:38
filtercpsw_express_checkout_allow_custom_pagesinc\slide-out.php:39
actioncpsw_payment_request_button_beforeinc\slide-out.php:40
filterwoocommerce_before_calculate_totalsinc\slide-out.php:41
actionadmin_noticesmodern-cart.php:64
actionadmin_initplugin-loader.php:43
actioninitplugin-loader.php:45
actionplugins_loadedplugin-loader.php:46
actionbefore_woocommerce_initplugin-loader.php:179
Maintenance & Trust

Modern Cart – WooCommerce Side Cart & Popup Cart Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 4, 2026
PHP min version7.4
Downloads167K

Community Trust

Rating100/100
Number of ratings3
Active installs30K
Developer Profile

Modern Cart – WooCommerce Side Cart & Popup Cart Developer Profile

Brainstorm Force

32 plugins · 8.6M total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
196 days
View full developer profile
Detection Fingerprints

How We Detect Modern Cart – WooCommerce Side Cart & Popup Cart

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/modern-cart/admin-core/assets/build/settings.js
Script Paths
/wp-content/plugins/modern-cart/admin-core/assets/build/settings.js
Version Parameters
modern-cart/admin-core/assets/build/settings.js?ver=

HTML / DOM Fingerprints

CSS Classes
moderncart-settings
Data Attributes
id="moderncart-settings"
JS Globals
moderncart_settings
FAQ

Frequently Asked Questions about Modern Cart – WooCommerce Side Cart & Popup Cart