Product Attribute Icons Display Security & Risk Analysis

wordpress.org/plugins/product-attribute-icons-display

Display customizable icons for product attributes on WooCommerce single product pages using WordPress Dashicons.

0 active installs v1.0.0 PHP 7.4+ WP 5.0+ Updated Unknown
badgescustomizationiconsproduct-attributeswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Product Attribute Icons Display Safe to Use in 2026?

Generally Safe

Score 100/100

Product Attribute Icons Display has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

Based on the provided static analysis and vulnerability history, the "product-attribute-icons-display" v1.0.0 plugin exhibits a generally good security posture. The absence of any detected dangerous functions, external HTTP requests, file operations, and the exclusive use of prepared statements for SQL queries are positive indicators. The plugin also demonstrates good practices by implementing nonce and capability checks, and a high percentage of properly escaped output. The attack surface is minimal and appears to be well-protected.

However, the taint analysis shows zero flows analyzed, which is a significant weakness. This indicates that potentially malicious input might not have been adequately traced or validated, leaving a blind spot in the security assessment. While there are no known historical vulnerabilities or CVEs, this could also be attributed to the limited scope of analysis or the plugin's relatively simple functionality.

In conclusion, while the plugin has implemented several strong security controls and has a clean vulnerability history, the lack of comprehensive taint analysis prevents a definitive declaration of safety. The limited attack surface and good coding practices are commendable, but the unanalyzed taint flows represent a potential, albeit undocumented, risk.

Key Concerns

  • Zero taint flows analyzed
Vulnerabilities
None known

Product Attribute Icons Display Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Product Attribute Icons Display Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
108 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped109 total outputs
Attack Surface

Product Attribute Icons Display Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[paiw_product_attribute_icons] includes\class-paiw-shortcode.php:41
WordPress Hooks 12
actionadmin_menuincludes\class-paiw-admin.php:48
actionadmin_initincludes\class-paiw-admin.php:49
actionadmin_enqueue_scriptsincludes\class-paiw-admin.php:50
actioninitincludes\class-paiw-core.php:65
actionwp_enqueue_scriptsincludes\class-paiw-core.php:79
actionadmin_noticesincludes\class-paiw-core.php:90
actionadmin_noticesincludes\class-paiw-core.php:96
actionadmin_noticesincludes\class-paiw-core.php:102
actionwpincludes\class-paiw-injector.php:56
actionwoocommerce_single_product_summaryincludes\class-paiw-injector.php:105
actionbefore_woocommerce_initproduct-attribute-icons-display.php:53
actionplugins_loadedproduct-attribute-icons-display.php:63
Maintenance & Trust

Product Attribute Icons Display Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.4
Downloads123

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Product Attribute Icons Display Developer Profile

NeatPlugins

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Attribute Icons Display

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-attribute-icons-display/assets/css/admin.css/wp-content/plugins/product-attribute-icons-display/assets/js/admin.js
Script Paths
/wp-content/plugins/product-attribute-icons-display/assets/js/admin.js
Version Parameters
product-attribute-icons-display/assets/css/admin.css?ver=product-attribute-icons-display/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
paiw-attribute-icon
Data Attributes
data-paiw-bg-colordata-paiw-text-colordata-paiw-border-color
JS Globals
PAIW_Corepaiw_admin_params
FAQ

Frequently Asked Questions about Product Attribute Icons Display