
Order Export for WooCommerce Security & Risk Analysis
wordpress.org/plugins/order-export-and-more-for-woocommerceExport WooCommerce orders & export products with advanced filtering. Supports CSV & all Excel formats.
Is Order Export for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100Order Export for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The "order-export-and-more-for-woocommerce" plugin version 3.26 exhibits a generally good security posture with several strengths. All identified entry points (AJAX handlers) have proper authentication checks, and the majority of SQL queries are prepared. Extensive output escaping is also in place, and the plugin demonstrates good practice by avoiding external HTTP requests. The presence of nonce and capability checks on all entry points further strengthens its security.
Key Concerns
- Use of unserialize
- Flow with unsanitized paths
- High severity taint flow
- Medium severity CVEs in history
- Bundled library (Select2)
Order Export for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Order Export for WooCommerce <= 3.24 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory
Order Export for WooCommerce <= 3.23 - Unauthenticated Sensitive Information Exposure
Order Export for WooCommerce Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Order Export for WooCommerce Attack Surface
AJAX Handlers 3
WordPress Hooks 7
Maintenance & Trust
Order Export for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Order Export for WooCommerce Alternatives
Store Exporter – Export WooCommerce Products, Orders, Subscriptions, Customers
woocommerce-exporter
Export WooCommerce products, orders, customers, categories, tags, subscriptions & more into formatted files like CSV, XML, Excel 2007, XLS, XLSX.
Order Export & Order Import for WooCommerce
order-import-export-for-woocommerce
The best order export import plugin for WooCommerce. Easily import and export WooCommerce orders and WooCommerce coupons using CSV.
All Woocommerce Export
all-woocommerce-export
Export WooCommerce Orders, products and Customers into Excel. Supports all Excel format XLS, XLSX & Mac)
WP Exporter Plus
wp-exporter-plus
This plugin provides functionality to export orders, posts, users, products, top 10 selling products data in CSV.
SWE Easy Orders Export
swe-easy-orders-export
SWE Easy Orders Export
Order Export for WooCommerce Developer Profile
28 plugins · 3.5M total installs
How We Detect Order Export for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/order-export-and-more-for-woocommerce/css/bootstrap.min.css/wp-content/plugins/order-export-and-more-for-woocommerce/css/font-awesome.min.css/wp-content/plugins/order-export-and-more-for-woocommerce/css/select2.min.css/wp-content/plugins/order-export-and-more-for-woocommerce/css/jem-export-lite.css/wp-content/plugins/order-export-and-more-for-woocommerce/js/popper.min.js/wp-content/plugins/order-export-and-more-for-woocommerce/js/bootstrap.min.js/wp-content/plugins/order-export-and-more-for-woocommerce/js/select2.js/wp-content/plugins/order-export-and-more-for-woocommerce/js/main.jsjs/main.jsjs/popper.min.jsjs/bootstrap.min.jsjs/select2.jsorder-export-and-more-for-woocommerce/js/main.js?ver=order-export-and-more-for-woocommerce/css/bootstrap.min.css?ver=order-export-and-more-for-woocommerce/css/font-awesome.min.css?ver=order-export-and-more-for-woocommerce/js/popper.min.js?ver=order-export-and-more-for-woocommerce/js/bootstrap.min.js?ver=order-export-and-more-for-woocommerce/css/select2.min.css?ver=order-export-and-more-for-woocommerce/js/select2.js?ver=order-export-and-more-for-woocommerce/css/jem-export-lite.css?ver=HTML / DOM Fingerprints
jemxp-export-optionsjem-exporter-wrapperjemxp-order-bulk-actionsjemxp-export-filters<!-- @simon 3.0 --><!-- TODO at some point we need to consider an autoloader --><!-- This writes out the file --><!-- TODO need to make this variable by type -->+5 moredata-nonce='<?php echo wp_create_nonce('jemexp_saving_field'); ?>'jemexport_settingsjemexp_admin_data/wp-json/jemxp/v1/settings