
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Security & Risk Analysis
wordpress.org/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerceCreate WooCommerce product addons, custom fields, and booking inputs. Perfect for appointments, services, and custom product pages.
Is Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "product-add-ons-custom-fields-booking-extra-options-for-woocommerce" plugin v1.1.0 reveals a generally strong security posture with no identified critical or high-severity vulnerabilities. The absence of dangerous functions, file operations, and external HTTP requests is a positive indicator. Furthermore, all SQL queries are properly prepared, and the vast majority of output is correctly escaped, minimizing the risk of injection attacks and cross-site scripting (XSS). The presence of two nonce checks, while not on every potential entry point, suggests some consideration for request verification.
However, a notable concern is the complete lack of capability checks and the absence of any authentication checks on the identified entry points. With zero identified AJAX handlers, REST API routes, shortcodes, or cron events, the attack surface appears minimal. But if any of these were to be introduced or are hidden, the lack of authentication and capability checks on them would be a significant risk. The plugin's vulnerability history is also clean, with no recorded CVEs, which is excellent, but it's important to note that this does not guarantee future immunity. The bundled Select2 library is significantly outdated (v3.0.3), which could be a potential vector for vulnerabilities if not properly addressed.
In conclusion, the plugin demonstrates good development practices regarding SQL sanitization and output escaping. The limited attack surface and clean vulnerability history are strong points. The primary weaknesses lie in the lack of authentication and capability checks on all potential entry points and the use of an outdated bundled library. While the current data suggests low immediate risk, proactive security measures, particularly around access control and library updates, are recommended to maintain a robust security profile.
Key Concerns
- Bundled outdated library (Select2 v3.0.3)
- No capability checks on entry points
- No authentication checks on entry points
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Security Vulnerabilities
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Release Timeline
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Code Analysis
Bundled Libraries
Output Escaping
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Attack Surface
WordPress Hooks 19
Maintenance & Trust
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Alternatives
Product Addons for Woocommerce – Product Options with Custom Fields
woo-custom-product-addons
WooCommerce Product Addons Add custom fields to your WooCommerce product page. With an easy-to-use Custom Form Builder.
YITH WooCommerce Product Add-Ons
yith-woocommerce-product-add-ons
Increase average order value by letting your customers purchase additional options on your products.
Flexible Product Fields (WooCommerce Product Addons) – WooCommerce Product Page Editor
flexible-product-fields
Add extra product options on your WooCommerce product page. Product addons for all product variations. 20 free product addons.
Extra Product Options for WooCommerce
extra-product-options-for-woocommerce
Add 22+ custom fields to WooCommerce products with nested conditional logic, custom pricing, and advanced display rules.
Custom Product Type for WooCommerce – Add-Ons, Data, Options, Layouts, Booking & Appointments
custom-product-type-for-woocommerce
Create WooCommerce Add-Ons, Data, Options, Booking, Layouts, and Appointments as custom product types. Revolutionize store's possibilities!
Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce Developer Profile
7 plugins · 7K total installs
How We Detect Product Add-Ons, Custom Fields, Booking & Extra Options for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/css/paocfbfw-front-end.css/wp-content/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/js/paocfbfw-front-end.js/wp-content/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/js/paocfbfw-back-end.js/wp-content/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/css/paocfbfw-back-end.css/wp-content/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/js/paocfbfw-front-end.js/wp-content/plugins/product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/js/paocfbfw-back-end.jsproduct-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/css/paocfbfw-front-end.css?ver=product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/js/paocfbfw-front-end.js?ver=product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/js/paocfbfw-back-end.js?ver=product-add-ons-custom-fields-booking-extra-options-for-woocommerce/assets/css/paocfbfw-back-end.css?ver=HTML / DOM Fingerprints
paocfbfw-addonspaocfbfw-fields-wrapper<!-- DO NOT REMOVE THIS IF, IT IS ESSENTIAL FOR THE `function_exists` CALL ABOVE TO PROPERLY WORK. --><!-- paocfbfw Settings --><!--Product Addons -->data-product-addons-idpaocfbfw_is_cart