Ni WooCommerce Dashboard Sales Report Security & Risk Analysis

wordpress.org/plugins/ni-woocommerce-dashboard-report

Enhance your WooCommerce store with the "Ni WooCommerce Dashboard Report" plugin. Gain insights, track sales, and optimize your business.

50 active installs v2.2.9 PHP 7.0+ WP 4.7+ Updated Aug 20, 2024
customer-reportdashboard-reportorder-status-reportsales-report
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ni WooCommerce Dashboard Sales Report Safe to Use in 2026?

Generally Safe

Score 92/100

Ni WooCommerce Dashboard Sales Report has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of the 'ni-woocommerce-dashboard-report' plugin v2.2.9 reveals a generally good security posture concerning direct attack vectors. There are no identified AJAX handlers, REST API routes, shortcodes, or cron events, which significantly limits the plugin's exposed attack surface. Furthermore, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, further reducing potential vulnerabilities. The absence of known CVEs in its history also suggests a stable security record.

However, a critical concern arises from the 100% of outputs that are not properly escaped. This indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the dashboard report, potentially compromising user sessions or data. The complete lack of nonce checks and capability checks across all entry points, coupled with the absence of taint analysis data (which may suggest the analysis environment or plugin complexity), leaves the plugin vulnerable to various attacks that rely on unauthenticated or unauthorized actions, especially if any of the identified entry points were to be indirectly exposed or manipulated.

In conclusion, while the plugin excels in minimizing its attack surface and adhering to secure database practices, the pervasive lack of output escaping is a major security weakness that demands immediate attention. The absence of nonces and capability checks also represents a significant risk, particularly if the plugin were to have any exploitable entry points. The vulnerability history being clean is positive, but it does not mitigate the present risks identified in the static analysis.

Key Concerns

  • 100% of outputs not properly escaped
  • 0 Nonce checks
  • 0 Capability checks
Vulnerabilities
None known

Ni WooCommerce Dashboard Sales Report Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Ni WooCommerce Dashboard Sales Report Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
10 prepared
Unescaped Output
17
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared10 total queries

Output Escaping

0% escaped17 total outputs
Attack Surface

Ni WooCommerce Dashboard Sales Report Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_initinclude\ni-dashboard-report.php:8
actionadmin_enqueue_scriptsinclude\ni-dashboard-report.php:9
actionwp_dashboard_setupinclude\ni-dashboard-report.php:28
actionplugins_loadedni-woocommerce-dashboard-report.php:25
actionbefore_woocommerce_initni-woocommerce-dashboard-report.php:26
Maintenance & Trust

Ni WooCommerce Dashboard Sales Report Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedAug 20, 2024
PHP min version7.0
Downloads19K

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

Ni WooCommerce Dashboard Sales Report Developer Profile

Anzar Ahmed

25 plugins · 5K total installs

71
trust score
Avg Security Score
88/100
Avg Patch Time
228 days
View full developer profile
Detection Fingerprints

How We Detect Ni WooCommerce Dashboard Sales Report

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ni-woocommerce-dashboard-report/assets/css/ni-dashboard-report-style.css

HTML / DOM Fingerprints

CSS Classes
ni_dashboard_report_table
FAQ

Frequently Asked Questions about Ni WooCommerce Dashboard Sales Report