Product Category Dropdowns Security & Risk Analysis

wordpress.org/plugins/product-category-dropdowns

Displays product categories as dependent drop-down selects.

900 active installs v1.0.0 PHP + WP 4.7+ Updated Oct 12, 2025
category-dropdownsdependent-category-selectsproduct-categoriessearch-by-categorywoocommerce-categories
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Product Category Dropdowns Safe to Use in 2026?

Generally Safe

Score 100/100

Product Category Dropdowns has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "product-category-dropdowns" plugin v1.0.0 exhibits a generally good security posture based on the static analysis and vulnerability history. The absence of known CVEs and a clean vulnerability history is a significant strength, suggesting a history of responsible development. Furthermore, the plugin does not utilize dangerous functions, perform file operations, or make external HTTP requests, and all SQL queries are prepared, indicating a solid understanding of secure coding practices in these areas.

However, there are notable concerns arising from the code analysis. The most significant is the low percentage of properly escaped output (6%). This indicates a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data might be rendered directly in the browser without proper sanitization. While there are no direct indicators of critical taint flows or unsanitized paths in the provided data, the potential for XSS due to insufficient output escaping is a substantial risk.

In conclusion, while the plugin avoids many common pitfalls and has a clean historical record, the severe lack of output escaping presents a critical security weakness. Developers should prioritize addressing this to mitigate the significant XSS risk. The small attack surface and absence of other complex entry points are positive, but the output escaping issue overshadows these strengths.

Key Concerns

  • Insufficient output escaping
Vulnerabilities
None known

Product Category Dropdowns Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Product Category Dropdowns Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
15
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

6% escaped16 total outputs
Attack Surface

Product Category Dropdowns Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[product_category_selector] product-category-dropdowns.php:61
WordPress Hooks 3
actionwp_enqueue_scriptsproduct-category-dropdowns.php:58
actionwidgets_initproduct-category-dropdowns.php:59
actionbefore_woocommerce_initproduct-category-dropdowns.php:115
Maintenance & Trust

Product Category Dropdowns Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 12, 2025
PHP min version
Downloads12K

Community Trust

Rating94/100
Number of ratings12
Active installs900
Developer Profile

Product Category Dropdowns Developer Profile

Pektsekye

14 plugins · 6K total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
8 days
View full developer profile
Detection Fingerprints

How We Detect Product Category Dropdowns

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-category-dropdowns/view/frontend/web/main.css/wp-content/plugins/product-category-dropdowns/view/frontend/web/main.js
Script Paths
/wp-content/plugins/product-category-dropdowns/view/frontend/web/main.js
Version Parameters
product-category-dropdowns/view/frontend/web/main.css?ver=product-category-dropdowns/view/frontend/web/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
pektsekye-product-category-dropdowns-widgetpektsekye-product-category-dropdowns-block
JS Globals
Pektsekye_ProductCategoryDropdowns
Shortcode Output
<div class="pektsekye-product-category-dropdowns-block">
FAQ

Frequently Asked Questions about Product Category Dropdowns