
Order Status History for WooCommerce Security & Risk Analysis
wordpress.org/plugins/order-status-history-for-woocommerceSpeed up your daily processing of orders by getting to know more about who's ordering. Themed order status color swatches, Reports, CSV, free.
Is Order Status History for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Order Status History for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of "order-status-history-for-woocommerce" v2.0.2 reveals several concerning aspects regarding its security practices. While the plugin boasts a zero attack surface and no known CVEs, indicating a potentially clean history and limited exposure points, the internal code quality raises significant flags. Notably, 100% of the SQL queries are not using prepared statements, which is a critical vulnerability waiting to be exploited by SQL injection attacks. Furthermore, only 23% of output escaping is properly implemented, leaving the door open for Cross-Site Scripting (XSS) vulnerabilities. The presence of unsanitized paths in the taint analysis, although not classified as critical or high, still represents a potential security risk that requires immediate attention. The lack of nonce and capability checks on the identified entry points, coupled with file operations, further exacerbates these risks. The plugin's strengths lie in its lack of known vulnerabilities and a seemingly small external attack surface, but these are overshadowed by significant internal code security deficiencies.
Key Concerns
- 100% of SQL queries use raw SQL
- Only 23% of output properly escaped
- Unsanitized paths found in taint analysis
- No nonce checks
- No capability checks
Order Status History for WooCommerce Security Vulnerabilities
Order Status History for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Order Status History for WooCommerce Attack Surface
WordPress Hooks 22
Maintenance & Trust
Order Status History for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Order Status History for WooCommerce Alternatives
Track Order History for WooCommerce
wc-past-orders
Woocommerce supportive plugin for easy customer history and previously placed orders.
Dashify: WooCommerce admin dashboard theme
dashify
A modern design and UI for the WooCommerce admin. Manage, search, and navigate orders faster. Make the WordPress admin dashboard ecommerce-focused.
Custom Order Status Manager for WooCommerce
bp-custom-order-status-for-woocommerce
Custom Order Status Manager for WooCommerce plugin allows you to create, delete and edit order statuses to better control the flow of your orders.
Custom Order Status for WooCommerce
custom-order-statuses-woocommerce
Custom Order Status for WooCommerce allows you to create and manage order statuses. It improves order management & overall order workflow.
Sequential Order Numbers for WooCommerce
woocommerce-sequential-order-numbers
This plugin extends WooCommerce by setting sequential order numbers for new orders.
Order Status History for WooCommerce Developer Profile
2 plugins · 2K total installs
How We Detect Order Status History for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/order-status-history-for-woocommerce/css/osh-admin.css/wp-content/plugins/order-status-history-for-woocommerce/css/osh-public.css/wp-content/plugins/order-status-history-for-woocommerce/js/osh-admin.js/wp-content/plugins/order-status-history-for-woocommerce/js/osh-public.js/wp-content/plugins/order-status-history-for-woocommerce/js/osh-admin.js/wp-content/plugins/order-status-history-for-woocommerce/js/osh-public.jsorder-status-history-for-woocommerce/css/osh-admin.css?ver=order-status-history-for-woocommerce/css/osh-public.css?ver=order-status-history-for-woocommerce/js/osh-admin.js?ver=order-status-history-for-woocommerce/js/osh-public.js?ver=HTML / DOM Fingerprints
osh-history-boxosh-hx-color<!-- HPOS-compatibility ENABLED --><!-- Legacy support -->data-osh-order-idwindow.oshWoo