Order auto complete for WooCommerce Security & Risk Analysis

wordpress.org/plugins/order-auto-complete-for-woocommerce

It is a simple woocommerce addon or extension.If Enable the plugin, then your all woocommerce order will be automatically completed.

1K active installs v1.2.4 PHP 7.4+ WP 4.8+ Updated Jan 21, 2026
add-to-cart-button-optionauto-completeorder-auto-completewoocommercewoocommerce-order-auto-complete
100
A · Safe
CVEs total1
Unpatched0
Last CVEOct 3, 2023
Download
Safety Verdict

Is Order auto complete for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Order auto complete for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Oct 3, 2023Updated 2mo ago
Risk Assessment

The "order-auto-complete-for-woocommerce" plugin version 1.2.4 exhibits a generally strong security posture, primarily due to robust implementation of security best practices. The plugin features a limited attack surface with only two AJAX handlers, both of which correctly implement nonce and capability checks, preventing unauthorized access and actions. Furthermore, all SQL queries utilize prepared statements, and a high percentage of output is properly escaped, mitigating risks of SQL injection and cross-site scripting vulnerabilities originating from the plugin's code. The absence of file operations, external HTTP requests, and bundled libraries further contributes to its secure design. However, a past Cross-Site Scripting (XSS) vulnerability, while now patched, indicates a historical weakness that warrants continued vigilance. The presence of a medium-severity CVE in the past, although not currently unpatched, suggests that thorough code reviews and ongoing security testing are essential to prevent future similar occurrences. Overall, the plugin demonstrates good security awareness in its current version but should be monitored for future updates.

Key Concerns

  • Past medium severity CVE related to XSS
Vulnerabilities
1

Order auto complete for WooCommerce Security Vulnerabilities

CVEs by Year

1 CVE in 2023
2023
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2023-45072medium · 4.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Order auto complete for WooCommerce <= 1.2.0 - Authenticated (Administrator+) Stored Cross-Site Scripting

Oct 3, 2023 Patched in 1.2.1 (112d)
Code Analysis
Analyzed Mar 16, 2026

Order auto complete for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
16 escaped
Nonce Checks
2
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

89% escaped18 total outputs
Attack Surface

Order auto complete for WooCommerce Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_woodecor_dismiss_noticeindex.php:286
authwp_ajax_woodecor_dismiss_noticetrunk\index.php:286
WordPress Hooks 18
filterwoocommerce_product_single_add_to_cart_textfunction.php:7
filterwoocommerce_product_add_to_cart_textfunction.php:21
actionwoocommerce_thankyouindex.php:26
actionadmin_initindex.php:81
actionadmin_menuindex.php:203
actionadmin_enqueue_scriptsindex.php:251
actionwp_enqueue_scriptsindex.php:258
actionadmin_initindex.php:263
actionadmin_noticesindex.php:305
filterwoocommerce_product_single_add_to_cart_texttrunk\function.php:7
filterwoocommerce_product_add_to_cart_texttrunk\function.php:21
actionwoocommerce_thankyoutrunk\index.php:26
actionadmin_inittrunk\index.php:81
actionadmin_menutrunk\index.php:203
actionadmin_enqueue_scriptstrunk\index.php:251
actionwp_enqueue_scriptstrunk\index.php:258
actionadmin_inittrunk\index.php:263
actionadmin_noticestrunk\index.php:305
Maintenance & Trust

Order auto complete for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 21, 2026
PHP min version7.4
Downloads18K

Community Trust

Rating100/100
Number of ratings3
Active installs1K
Developer Profile

Order auto complete for WooCommerce Developer Profile

Ibrahim

6 plugins · 1K total installs

71
trust score
Avg Security Score
89/100
Avg Patch Time
112 days
View full developer profile
Detection Fingerprints

How We Detect Order auto complete for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/order-auto-complete-for-woocommerce/assets/css/wtt-style.css

HTML / DOM Fingerprints

CSS Classes
woodecor-pro-link
Data Attributes
id='woodecor_field_cart'id='woodecor_field_readmore'id='woodecor_field_hide_notice'name='woodecor_options1'name='woodecor_options2'name='woodecor_hidenotice'
FAQ

Frequently Asked Questions about Order auto complete for WooCommerce