PBO Move to Wishlist for YITH WooCommerce Wishlist Security & Risk Analysis

wordpress.org/plugins/pbo-move-to-wishlist-for-yith-woocommerce-wishlist

PBO Move to Wishlist for YITH WooCommerce Wishlist is a simple solution for adding functionality called 'Move to Wishlist' to Shopping Cart.

10 active installs v1.0.2 PHP + WP 4.0+ Updated Oct 13, 2015
e-commerceproductsshopwishlistwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PBO Move to Wishlist for YITH WooCommerce Wishlist Safe to Use in 2026?

Generally Safe

Score 85/100

PBO Move to Wishlist for YITH WooCommerce Wishlist has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "pbo-move-to-wishlist-for-yith-woocommerce-wishlist" plugin v1.0.2 exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points significantly minimizes the attack surface. Furthermore, the code signals show no dangerous functions, all SQL queries utilize prepared statements, and there are no file operations or external HTTP requests, all of which are excellent security practices. The presence of a nonce check and a healthy percentage of properly escaped output are also positive indicators. The plugin also boasts a clean vulnerability history with zero known CVEs, suggesting a history of secure development and maintenance.

While the static analysis reveals a very low risk profile, the lack of any taint analysis flows makes it impossible to fully assess the impact of potential data manipulation or the use of unsanitized inputs, even if the attack surface is currently limited. The complete absence of capability checks is a notable concern; while there are no apparent entry points that currently require authorization, any future additions or modifications to the plugin's functionality could introduce vulnerabilities if access controls are not implemented. The 78% proper output escaping, while good, leaves room for improvement as 22% of outputs are not properly escaped, which could potentially lead to cross-site scripting (XSS) vulnerabilities if those outputs handle user-supplied data.

Key Concerns

  • Some output is not properly escaped
  • No capability checks found
Vulnerabilities
None known

PBO Move to Wishlist for YITH WooCommerce Wishlist Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

PBO Move to Wishlist for YITH WooCommerce Wishlist Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
7 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

78% escaped9 total outputs
Attack Surface

PBO Move to Wishlist for YITH WooCommerce Wishlist Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_noticespbo-move-to-wishlist.php:40
actionplugins_loadedpbo-move-to-wishlist.php:47
actionadmin_initpbo-move-to-wishlist.php:56
actionwp_loadedpbo-move-to-wishlist.php:59
actionpbo_mtw_initpbo-move-to-wishlist.php:66
Maintenance & Trust

PBO Move to Wishlist for YITH WooCommerce Wishlist Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedOct 13, 2015
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

PBO Move to Wishlist for YITH WooCommerce Wishlist Developer Profile

Piotr Boguslawski

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PBO Move to Wishlist for YITH WooCommerce Wishlist

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
pbo_move_to_wishlist
Data Attributes
data-cart_item_key
FAQ

Frequently Asked Questions about PBO Move to Wishlist for YITH WooCommerce Wishlist