
Premmerce Wholesale Pricing for WooCommerce Security & Risk Analysis
wordpress.org/plugins/premmerce-woocommerce-wholesale-pricingPremmerce Wholesale Pricing for WooCommerce is a plugin that allows you to add individual wholesale prices or other price types for WooCommerce produc …
Is Premmerce Wholesale Pricing for WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100Premmerce Wholesale Pricing for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The static analysis of Premmerce WooCommerce Wholesale Pricing v1.1.12 reveals a mixed security posture. While the plugin demonstrates good practices in key areas such as SQL query preparation (100% using prepared statements) and a low number of entry points with no apparent unprotected ones, there are significant concerns. The taint analysis shows 3 flows with unsanitized paths, indicating potential vulnerabilities that could be exploited if they interact with sensitive operations, even though no critical or high severity issues were flagged in this specific analysis. The plugin's vulnerability history is a major red flag, with a significant number of past high and medium severity vulnerabilities, including SQL injection, PHP remote file inclusion, and missing authorization. The fact that the last vulnerability was in 2025-11-17, and is described as 'unpatched' if that date were in the past, strongly suggests a pattern of introducing security flaws that require patching.
Despite the current static analysis not flagging critical or high severity taint flows, the historical pattern of high-severity vulnerabilities and the presence of unsanitized paths in the taint analysis warrant caution. The plugin has a history of critical types of vulnerabilities that have been addressed in the past. The current static analysis shows 70% proper output escaping, meaning 30% of outputs are potentially unescaped, which can lead to XSS vulnerabilities. The presence of nonce checks and capability checks is positive, but the overall history suggests a need for rigorous and ongoing security testing. A balanced conclusion is that while some secure coding practices are employed, the historical vulnerability landscape and current taint analysis results indicate potential for exploitable weaknesses.
Key Concerns
- Taint flows with unsanitized paths detected
- 30% of outputs are not properly escaped
- Bundled Freemius v1.0 library
- 4 High severity vulnerabilities in history
- 1 Medium severity vulnerability in history
Premmerce Wholesale Pricing for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
Premmerce Wholesale Pricing for WooCommerce <= 1.1.10 - Authenticated (Subscriber+) SQL Injection
Premmerce Wholesale Pricing for WooCommerce <= 1.1.10 - Unauthenticated Local File Inclusion
Premmerce Wholesale Pricing for WooCommerce <= 1.1.10 - Missing Authorization
Freemius SDK <= 2.2.3 - Missing Authorization to Arbitrary Options Update
Premmerce Wholesale Pricing for WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Premmerce Wholesale Pricing for WooCommerce Attack Surface
WordPress Hooks 25
Maintenance & Trust
Premmerce Wholesale Pricing for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Premmerce Wholesale Pricing for WooCommerce Alternatives
Wholesale Customers For WooCommerce
wholesale-customers-for-woo
A simple and easy to use B2B solution for WooCommerce. Wholesale Customers For Woo will assist you in selling wholesale through your WooCommerce store …
B2BKing — Ultimate WooCommerce B2B and Wholesale Solution — Dynamic Pricing, Wholesale Order Form & More
b2bking-wholesale-for-woocommerce
B2BKing is the complete solution for running a Wholesale, B2B or B2B + B2C hybrid store with WooCommerce.
Whols – Wholesale Prices and B2B Store Solution for WooCommerce
whols
WooCommerce Wholesale plugin for WooCommerce wholesale pricing. It is a b2b plugin for WooCommerce. WooCommerce B2B or B2B + B2C hybrid Store Solution
Wholesale Market
wholesale-market
Create your own wholesale market by adding wholesale price for particular customers in woocommerce
WholeSale Products Dynamic Pricing Management WooCommerce
wholesale-products-dynamic-pricing-management-woocommerce
WholeSale Products Dynamic Pricing Management for Multiple User Roles plugin to manage WooCommerce B2B Store
Premmerce Wholesale Pricing for WooCommerce Developer Profile
14 plugins · 60K total installs
How We Detect Premmerce Wholesale Pricing for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/premmerce-woocommerce-wholesale-pricing/assets/css/admin.css/wp-content/plugins/premmerce-woocommerce-wholesale-pricing/assets/css/price-types.css/wp-content/plugins/premmerce-woocommerce-wholesale-pricing/assets/js/admin-price-types.js/wp-content/plugins/premmerce-woocommerce-wholesale-pricing/assets/js/price-types.js/wp-content/plugins/premmerce-woocommerce-wholesale-pricing/assets/js/admin-price-types.js/wp-content/plugins/premmerce-woocommerce-wholesale-pricing/assets/js/price-types.jspremmerce-woocommerce-wholesale-pricing/assets/css/admin.css?ver=premmerce-woocommerce-wholesale-pricing/assets/css/price-types.css?ver=premmerce-woocommerce-wholesale-pricing/assets/js/admin-price-types.js?ver=premmerce-woocommerce-wholesale-pricing/assets/js/price-types.js?ver=HTML / DOM Fingerprints
premmerce-price-types-tablepremmerce-price-type-formpremmerce-price-types-formPremmerce Wholesale Pricing for WooCommercedata-nonce-deletedata-nonce-updatedata-price-type-idpremmerce_price_types_admin_params