
Custom Tabs & Fields for Woocommerce Security & Risk Analysis
wordpress.org/plugins/moodgiver-custom-tabs-fields-for-woocommerceCustom Tabs & Fields for Woocommerce is a WordPress plugin to add custom tabs and custom meta-data to Woocommerce products.
Is Custom Tabs & Fields for Woocommerce Safe to Use in 2026?
Generally Safe
Score 85/100Custom Tabs & Fields for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'moodgiver-custom-tabs-fields-for-woocommerce' v0.2a demonstrates a generally good security posture with no publicly known vulnerabilities and a clean taint analysis. The static analysis also reveals a very small attack surface, with no AJAX handlers, REST API routes, shortcodes, or cron events exposed. This is a significant strength, as it limits the potential entry points for attackers. However, there are notable areas for improvement. A significant concern is the use of SQL queries without prepared statements, as all three identified queries fall into this category. This practice introduces a high risk of SQL injection vulnerabilities. Furthermore, only 42% of output is properly escaped, leaving a considerable portion vulnerable to cross-site scripting (XSS) attacks. While nonce and capability checks are present, their effectiveness is limited by the lack of exploitable entry points. The absence of known vulnerabilities is positive but can sometimes be attributed to a lack of rigorous security testing or limited adoption, rather than inherent strong security.
Key Concerns
- Raw SQL queries without prepared statements
- Insufficient output escaping
Custom Tabs & Fields for Woocommerce Security Vulnerabilities
Custom Tabs & Fields for Woocommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Custom Tabs & Fields for Woocommerce Attack Surface
WordPress Hooks 17
Maintenance & Trust
Custom Tabs & Fields for Woocommerce Maintenance & Trust
Maintenance Signals
Community Trust
Custom Tabs & Fields for Woocommerce Alternatives
Extra Custom Product Tabs for WooCommerce
custom-product-tabs-for-woocommerce
Add extra multiple custom tabs with tab name and content in single product using WooCommerce.
Checkout Field Editor (Checkout Manager) for WooCommerce
woo-checkout-field-editor-pro
Checkout Field Editor (Checkout Manager) for WooCommerce – The best WooCommerce checkout manager plugin to manage WooCommerce checkout fields.
Flexible Checkout Fields for WooCommerce – WooCommerce Checkout Manager
flexible-checkout-fields
The best WooCommerce checkout manager. Edit, remove or add checkout fields. Customize WooCommerce checkout with this checkout field customizer.
Product Addons for Woocommerce – Product Options with Custom Fields
woo-custom-product-addons
WooCommerce Product Addons Add custom fields to your WooCommerce product page. With an easy-to-use Custom Form Builder.
YITH WooCommerce Product Add-Ons
yith-woocommerce-product-add-ons
Increase average order value by letting your customers purchase additional options on your products.
Custom Tabs & Fields for Woocommerce Developer Profile
3 plugins · 80 total installs
How We Detect Custom Tabs & Fields for Woocommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/moodgiver-custom-tabs-fields-for-woocommerce/assets/bootstrap/js/bootstrap.min.js/wp-content/plugins/moodgiver-custom-tabs-fields-for-woocommerce/assets/bootstrap/css/bootstrap.css/wp-content/plugins/moodgiver-custom-tabs-fields-for-woocommerce/assets/js/moodgiver-ctcf.js/wp-content/plugins/moodgiver-custom-tabs-fields-for-woocommerce/assets/css/moodgiver-ctcf.css/wp-content/plugins/moodgiver-custom-tabs-fields-for-woocommerce/assets/css/moodgiver-ctcf.cssassets/bootstrap/js/bootstrap.min.jsassets/js/moodgiver-ctcf.jsmoodgiver-ctcf.js?ver=1moodgiver-ctcf.css?ver=moodgiver-ctcf.css?ver=HTML / DOM Fingerprints
custom-fields-tablefield_rowtable-options-rowcfmb_new_optionbtn_deletebtn-show<!-- required files --><!-- main class functions --><!-- create CSV sample file to import data for products custom fields --><!-- metabox admin manager -->+10 moredata-fielddata-targetvar _mg_ctcf_custom_fields_urlvar _mg_ctcf_custom_tabs_urlvar _mg_ctcf_settings_urlvar _mg_ctcf_delete_fields_url