Niz Products Carousel for Woocommerce Security & Risk Analysis

wordpress.org/plugins/niz-products-carousel-for-woocommerce

Create quickly and easily a beautiful dynamic Woocommerce products carousel for your e-commerce website.

0 active installs v1.0.0 PHP 5.4+ WP 4.0+ Updated Mar 20, 2020
carouselshortcodewoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Niz Products Carousel for Woocommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Niz Products Carousel for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "niz-products-carousel-for-woocommerce" plugin v1.0.0 presents a generally good security posture, with several positive indicators. The absence of known CVEs and no recorded vulnerabilities in its history suggest a well-maintained and secure codebase to date. Static analysis reveals no dangerous functions, file operations, or external HTTP requests, which are common vectors for attacks. Furthermore, all SQL queries are prepared, and a high percentage of output is properly escaped, mitigating risks of injection and XSS vulnerabilities. The limited attack surface, consisting of a single shortcode with no immediately apparent unprotected entry points, is also a positive sign.

However, there are areas that warrant attention. The complete absence of nonce checks and capability checks across all identified entry points is a significant concern. While the current version has a small attack surface, this lack of built-in authorization mechanisms means that any future expansion of functionality, particularly if it involves user-interactive features or data manipulation, could be easily exploited without proper checks. The static analysis did not detect any taint flows, but this could be due to the limited scope of the analysis or the absence of complex data interactions. The plugin's good security history is a strength, but it should not breed complacency, especially with the identified gap in authorization controls.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
  • Minor unescaped output detected
Vulnerabilities
None known

Niz Products Carousel for Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Niz Products Carousel for Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
26 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

90% escaped29 total outputs
Attack Surface

Niz Products Carousel for Woocommerce Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[niz_woopc] niz_woopc.php:30
WordPress Hooks 3
actionadmin_noticesinc\class.niz-dependency-checker.php:23
actionwp_enqueue_scriptsniz_woopc.php:27
actionadmin_menuniz_woopc.php:28
Maintenance & Trust

Niz Products Carousel for Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedMar 20, 2020
PHP min version5.4
Downloads916

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Niz Products Carousel for Woocommerce Developer Profile

nizapp

3 plugins · 60 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Niz Products Carousel for Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/niz-products-carousel-for-woocommerce/assets/css/style.css/wp-content/plugins/niz-products-carousel-for-woocommerce/lib/owl/assets/owl.carousel.min.css/wp-content/plugins/niz-products-carousel-for-woocommerce/lib/owl/assets/owl.theme.default.min.css/wp-content/plugins/niz-products-carousel-for-woocommerce/assets/js/script.js/wp-content/plugins/niz-products-carousel-for-woocommerce/lib/owl/owl.carousel.min.js/wp-content/plugins/niz-products-carousel-for-woocommerce/assets/js/admin.js
Script Paths
/wp-content/plugins/niz-products-carousel-for-woocommerce/lib/owl/owl.carousel.min.js/wp-content/plugins/niz-products-carousel-for-woocommerce/assets/js/script.js/wp-content/plugins/niz-products-carousel-for-woocommerce/assets/js/admin.js
Version Parameters
niz-products-carousel-for-woocommerce/assets/css/style.css?ver=niz-products-carousel-for-woocommerce/lib/owl/assets/owl.carousel.min.css?ver=niz-products-carousel-for-woocommerce/lib/owl/assets/owl.theme.default.min.css?ver=niz-products-carousel-for-woocommerce/assets/js/script.js?ver=niz-products-carousel-for-woocommerce/lib/owl/owl.carousel.min.js?ver=niz-products-carousel-for-woocommerce/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
niz-panel-wrapperniz-panelwoo-shortcodeniz-atts
Data Attributes
role="niz-shortcode"
JS Globals
niz_ad_params
Shortcode Output
[niz_woopc
FAQ

Frequently Asked Questions about Niz Products Carousel for Woocommerce