
MSRP (RRP) Pricing for WooCommerce Security & Risk Analysis
wordpress.org/plugins/msrp-for-woocommerceShow product Manufacturer's Suggested Retail Price (MSRP) in WooCommerce in your store to increase sales & highlight your competitive prices
Is MSRP (RRP) Pricing for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100MSRP (RRP) Pricing for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "msrp-for-woocommerce" plugin v2.0.1 exhibits a generally good security posture with a small attack surface and a high percentage of properly escaped outputs. The plugin also demonstrates a reasonable number of nonce and capability checks, which are crucial for preventing unauthorized actions. However, the presence of two instances of the `unserialize` function is a significant concern, as unserialization of untrusted data can lead to remote code execution vulnerabilities. While taint analysis did not reveal any immediate exploitable flows, the inherent risk associated with `unserialize` remains. The plugin's vulnerability history shows a past medium-severity Cross-Site Scripting (XSS) vulnerability, indicating a prior weakness in input neutralization. Although currently patched and no unpatched CVEs are listed, this history warrants continued vigilance. Overall, the plugin has strengths in output handling and attack surface management, but the use of `unserialize` and the past XSS vulnerability represent notable areas of risk that require careful consideration.
Key Concerns
- Dangerous function 'unserialize' found
- SQL queries not using prepared statements
- Past medium severity CVE (XSS)
MSRP (RRP) Pricing for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
MSRP (RRP) Pricing for WooCommerce <= 1.8.1 - Reflected Cross-Site Scripting
MSRP (RRP) Pricing for WooCommerce Release Timeline
MSRP (RRP) Pricing for WooCommerce Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
MSRP (RRP) Pricing for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 26
Maintenance & Trust
MSRP (RRP) Pricing for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
MSRP (RRP) Pricing for WooCommerce Alternatives
AutoPromote
autopromote
Dynamically update sales information, banners, announcements, and promotions with ease across your website.
Nexora Promo Messages for WooCommerce
nexora-promo-messages-for-woocommerce
Increase WooCommerce sales with eye-catching promo messages. Highlight offers, urgency, and product benefits directly on product & shop pages.
Smart Discount
smart-discount
🚀 Transform Your WooCommerce Store with Dynamic Discounts Create engaging bulk discounts with real-time progress messages to boost sales.
Account Engagement
pardot
Integrate Account Engagement with WordPress: easily track visitors, embed forms and dynamic content in pages and posts, or use the forms or dynamic co …
Woobox
woobox
Easily embed your Woobox promotions in WordPress using a simple shortcode.
MSRP (RRP) Pricing for WooCommerce Developer Profile
64 plugins · 137K total installs
How We Detect MSRP (RRP) Pricing for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/msrp-for-woocommerce/assets/css/alg-wc-msrp.css/wp-content/plugins/msrp-for-woocommerce/assets/js/alg-wc-msrp.js/wp-content/plugins/msrp-for-woocommerce/assets/js/alg-wc-msrp.jsmsrp-for-woocommerce/assets/css/alg-wc-msrp.css?ver=msrp-for-woocommerce/assets/js/alg-wc-msrp.js?ver=HTML / DOM Fingerprints
alg-wc-msrp-admin-field-labeldata-alg-wc-msrp-placeholderalg_wc_msrp_options[alg_wc_msrp]