Nexora Promo Messages for WooCommerce Security & Risk Analysis

wordpress.org/plugins/nexora-promo-messages-for-woocommerce

Increase WooCommerce sales with eye-catching promo messages. Highlight offers, urgency, and product benefits directly on product & shop pages.

0 active installs v1.0.2 PHP 7.4+ WP 6.0+ Updated Apr 7, 2026
conversion-optimizationmarketing-messagesproduct-promotionsales-notificationswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Nexora Promo Messages for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Nexora Promo Messages for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The static analysis of the nexora-promo-messages-for-woocommerce plugin v1.0.2 reveals a generally strong security posture. The plugin demonstrates excellent adherence to best practices by implementing proper nonce and capability checks for its sole AJAX handler. All SQL queries are executed using prepared statements, and a very high percentage of outputs are properly escaped, significantly mitigating risks of common web vulnerabilities like SQL injection and Cross-Site Scripting (XSS). There are no recorded vulnerabilities (CVEs) for this plugin, and its code analysis shows no critical or high severity taint flows, dangerous functions, file operations, or external HTTP requests. This indicates a diligent approach to secure coding and maintenance by the developers. The lack of a large attack surface and the robust security controls in place are commendable strengths. However, the absence of taint analysis data (total flows analyzed: 0) means that potential vulnerabilities in complex data handling or less obvious attack vectors might not have been detected. While the current state is very positive, a complete taint analysis would provide further assurance.

Vulnerabilities
None known

Nexora Promo Messages for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Nexora Promo Messages for WooCommerce Release Timeline

v1.0.2Current
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

Nexora Promo Messages for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
1
197 escaped
Nonce Checks
2
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

99% escaped198 total outputs
Attack Surface

Nexora Promo Messages for WooCommerce Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_nexoprme_search_productsadmin/class-ajax-handler.php:26
WordPress Hooks 17
actionadmin_enqueue_scriptsadmin/class-admin-controller.php:74
filterpost_updated_messagesadmin/class-admin-controller.php:75
filterparent_fileadmin/class-admin-controller.php:76
filtersubmenu_fileadmin/class-admin-controller.php:77
actionadmin_menuadmin/class-menu-handler.php:33
actionadmin_enqueue_scriptsadmin/class-menu-handler.php:34
actionadd_meta_boxesadmin/class-meta-boxes.php:31
actionwoocommerce_after_shop_loop_item_titlefrontend/class-frontend-controller.php:51
actionwoocommerce_single_product_summaryfrontend/class-frontend-controller.php:52
actionwp_enqueue_scriptsfrontend/class-frontend-controller.php:53
actionplugins_loadedincludes/class-plugin.php:117
actionadmin_noticesincludes/class-plugin.php:125
actioninitincludes/class-post-type.php:33
actionbefore_woocommerce_initnexora-promo-messages-for-woocommerce.php:58
actionplugins_loadednexora-promo-messages-for-woocommerce.php:87
actionadmin_initnexora-promo-messages-for-woocommerce.php:110
actionadmin_noticesnexora-promo-messages-for-woocommerce.php:121
Maintenance & Trust

Nexora Promo Messages for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 7, 2026
PHP min version7.4
Downloads160

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Nexora Promo Messages for WooCommerce Developer Profile

Amin

3 plugins · 70 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Nexora Promo Messages for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/nexora-promo-messages-for-woocommerce/assets/css/admin.css/wp-content/plugins/nexora-promo-messages-for-woocommerce/assets/js/admin.js/wp-content/plugins/nexora-promo-messages-for-woocommerce/assets/css/frontend.css/wp-content/plugins/nexora-promo-messages-for-woocommerce/assets/js/animation.js
Script Paths
/wp-content/plugins/nexora-promo-messages-for-woocommerce/assets/js/admin.js/wp-content/plugins/nexora-promo-messages-for-woocommerce/assets/js/animation.js
Version Parameters
nexora-promo-messages-for-woocommerce/assets/css/admin.css?ver=nexora-promo-messages-for-woocommerce/assets/js/admin.js?ver=nexora-promo-messages-for-woocommerce/assets/css/frontend.css?ver=nexora-promo-messages-for-woocommerce/assets/js/animation.js?ver=

HTML / DOM Fingerprints

JS Globals
nexoprmeAdmin
FAQ

Frequently Asked Questions about Nexora Promo Messages for WooCommerce