
Most Viewed Products for WooCommerce Security & Risk Analysis
wordpress.org/plugins/most-viewed-products-for-woocommerceLicense: GPLv2 or later License URI: http://www.gnu.org/licenses/gpl-2.0.html Display a list of most viewed wooCommerce products in Admin and on the …
Is Most Viewed Products for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Most Viewed Products for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security posture of the "most-viewed-products-for-woocommerce" plugin v1.2.0 presents a mixed bag of good practices alongside specific concerns. On the positive side, the plugin demonstrates a commitment to secure database interactions by utilizing prepared statements for all SQL queries and avoids external HTTP requests. The limited attack surface, with only one shortcode and no AJAX handlers or REST API routes with accessible entry points, is also a strength. However, the presence of a dangerous function like `create_function` is a significant red flag, as it can be a vector for code injection if not handled with extreme care. Furthermore, the relatively low percentage of properly escaped output (44%) suggests a potential for Cross-Site Scripting (XSS) vulnerabilities, especially when combined with the lack of explicit nonce checks on its single entry point. The absence of recorded vulnerabilities in its history is positive, but this could also be due to a lack of extensive security auditing or reporting rather than a guarantee of complete security. Overall, while the plugin has some solid security foundations, the identified code signals warrant careful attention and potential remediation.
Key Concerns
- Dangerous function `create_function` used
- Low output escaping percentage (44%)
- No nonce checks on entry points
Most Viewed Products for WooCommerce Security Vulnerabilities
Most Viewed Products for WooCommerce Code Analysis
Dangerous Functions Found
Output Escaping
Most Viewed Products for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
Most Viewed Products for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Most Viewed Products for WooCommerce Alternatives
WebberZone Top 10 — Popular Posts
top-10
Track post views and page views, and display popular posts and trending content on your WordPress site.
WP Most Popular
wp-most-popular
WP Most Popular is a simple plugin which tracks your most popular blog posts based on views and lets you display them in your theme or blog sidebar.
Popular Posts
popular-posts-plugin
Popular Posts displays a list of your blog's most-viewed posts. The output can be customised in many ways.
Popular Widget
popular-widget
Display the most commented or most viewed posts in a tabbed widget, filter the post by date range or by category. It also includes a tags tab.
Most Popular Post Widget
most-popular-post
Shwon your most popular/viewed post with view count
Most Viewed Products for WooCommerce Developer Profile
1 plugin · 100 total installs
How We Detect Most Viewed Products for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/most-viewed-products-for-woocommerce/includes/classes/class-zwcmvp-orders-table.phpHTML / DOM Fingerprints
woo-nav-tab-wrapperid="zwcmvp-most-view-products"id="zwcmvp-most-view-products-setting"