
Product Base Order for WooCommerce Security & Risk Analysis
wordpress.org/plugins/product-base-order-for-woocommerceProduct Base Order for WooCommerce
Is Product Base Order for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Product Base Order for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "product-base-order-for-woocommerce" v1.0.0 exhibits a mixed security posture. On one hand, it demonstrates good practices by using prepared statements for all SQL queries and a significant majority of its output is properly escaped. The absence of file operations and external HTTP requests further reduces potential attack vectors. Its vulnerability history is clean, with no recorded CVEs, suggesting a generally secure development history.
However, the static analysis reveals significant concerns. The presence of the `create_function` function is a major red flag, as it can lead to arbitrary code execution if not handled with extreme caution, and it's a deprecated and insecure practice. Furthermore, the lack of nonce checks and capability checks on its sole shortcode is a critical omission. While there are no unescaped outputs on its limited attack surface, the potential for code execution via `create_function` and privilege escalation or unauthorized actions via the unprotected shortcode presents substantial risks.
In conclusion, while the plugin has a clean vulnerability history and avoids common pitfalls like raw SQL and excessive attack vectors, the identified code signals and lack of security checks on its entry points introduce significant potential for exploitation. The use of `create_function` and the unprotected shortcode are serious weaknesses that require immediate attention.
Key Concerns
- Use of dangerous function: create_function
- Missing nonce check on entry points
- Missing capability check on entry points
- Output escaping not fully comprehensive
Product Base Order for WooCommerce Security Vulnerabilities
Product Base Order for WooCommerce Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Product Base Order for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Product Base Order for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Product Base Order for WooCommerce Alternatives
Autocomplete WooCommerce Orders
autocomplete-woocommerce-orders
Enhance your WooCommerce store with Autocomplete Orders. Automatically complete orders after payment, perfect for virtual goods and subscriptions.
Rearrange Products for WooCommerce
rearrange-woocommerce-products
Boost WooCommerce sales with the Rearrange Products for WooCommerce plugin. Easily reorder products with a simple drag-and-drop tool!
Smart Manager – Advanced WooCommerce Bulk Edit & Inventory Management
smart-manager-for-wp-e-commerce
WooCommerce Advanced Bulk Edit products, orders, & posts in an Excel-like sheet editor. Get advanced WooCommerce stock, pricing, & order management.
Extra Product Sorting Options for WooCommerce
woocommerce-extra-product-sorting-options
Rename the default product sorting option, add up to 5 new sorting options including alphabetical and on-sale sorting, or remove core sorting options.
Product Customer List for WooCommerce
wc-product-customer-list
Display a list of customers who bought a specific product at the bottom of the product edit page in WooCommerce and send them e-mails.
Product Base Order for WooCommerce Developer Profile
5 plugins · 60 total installs
How We Detect Product Base Order for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/product-base-order-for-woocommerce/assets/css/admin.css/wp-content/plugins/product-base-order-for-woocommerce/assets/css/style.css/wp-content/plugins/product-base-order-for-woocommerce/assets/js/admin.js/wp-content/plugins/product-base-order-for-woocommerce/assets/js/frontend.js/wp-content/plugins/product-base-order-for-woocommerce/assets/js/admin.js/wp-content/plugins/product-base-order-for-woocommerce/assets/js/frontend.jsproduct-base-order-for-woocommerce/assets/css/admin.css?ver=product-base-order-for-woocommerce/assets/css/style.css?ver=product-base-order-for-woocommerce/assets/js/admin.js?ver=product-base-order-for-woocommerce/assets/js/frontend.js?ver=HTML / DOM Fingerprints
wpr-product-base-order-wcCopyright (c) 2021 WP Realizer (email: wprealizer@gmail.com). All rights reserved.Released under the GPL licensehttp://www.opensource.org/licenses/gpl-license.phpThis is an add-on for WordPress+12 morewpr_product_base_order_wc