Product Filter Addon for-Woocommerce Security & Risk Analysis

wordpress.org/plugins/product-filter-addon-for-woocommerce

It is a product category search filter plugin. Which is helpful for your product sorting like category, subcategory & nested category, etc.

10 active installs v1.0 PHP + WP 1.0+ Updated Nov 25, 2019
woocommercewoocommerce-product-filterwoocommerce-product-sortingwordpress-product-filter-with-woo-commerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Product Filter Addon for-Woocommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Product Filter Addon for-Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "product-filter-addon-for-woocommerce" v1.0 plugin exhibits a generally strong security posture based on the provided static analysis. The complete absence of unsanitized paths in taint analysis, coupled with 100% prepared statement usage for SQL queries and a high percentage of properly escaped output, indicates good development practices regarding common web vulnerabilities. Furthermore, the lack of known CVEs and a clean vulnerability history further bolster confidence in its current security state.

While the plugin shows strengths in several areas, there are a few potential concerns. The presence of 8 AJAX handlers, although all appear to have authorization checks (0 unprotected), represents a significant attack surface that could be a target for brute-force or logic-based attacks if authorization mechanisms are flawed. The complete absence of capability checks, despite the presence of nonce checks, could be a missed opportunity to implement more granular access control, especially if some AJAX actions require specific user roles.

In conclusion, the plugin's technical implementation regarding data handling and output sanitization is commendable. However, the number of AJAX endpoints warrants careful review of their authorization logic to ensure robustness against potential abuses. The lack of specific capability checks is a minor weakness, but given the other positive indicators, the overall risk appears to be low.

Key Concerns

  • 8 AJAX handlers, some may need stricter authorization
  • No capability checks present on AJAX actions
Vulnerabilities
None known

Product Filter Addon for-Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Product Filter Addon for-Woocommerce Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Product Filter Addon for-Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
85 escaped
Nonce Checks
4
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped89 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

4 flows
nssProduct_ajax_eleFilter (main/nss-ele-threestep-function.php:8)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Product Filter Addon for-Woocommerce Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 8

authwp_ajax_nssProduct_ele_onestep_filter_addonmain/nss-ele-onestep-function.php:8
noprivwp_ajax_nssProduct_ele_onestep_filter_addonmain/nss-ele-onestep-function.php:9
authwp_ajax_nssProduct_ele_specfic_filter_addonmain/nss-ele-specfic-function.php:7
noprivwp_ajax_nssProduct_ele_specfic_filter_addonmain/nss-ele-specfic-function.php:8
authwp_ajax_nssProduct_ele_filter_addonmain/nss-ele-threestep-function.php:6
noprivwp_ajax_nssProduct_ele_filter_addonmain/nss-ele-threestep-function.php:7
authwp_ajax_nssProduct_ele_twostep_filter_addonmain/nss-ele-twostep-function.php:6
noprivwp_ajax_nssProduct_ele_twostep_filter_addonmain/nss-ele-twostep-function.php:7
WordPress Hooks 4
actionwp_enqueue_scriptsmain/nss-ele-addon-assistance.php:15
actionelementor/widgets/widgets_registeredmain/nss-ele-dashboard-option.php:33
actionelementor/elements/categories_registeredmain/nss-ele-dashboard-option.php:34
actionplugins_loadednss-addon-woocommerce-product-filter.php:22
Maintenance & Trust

Product Filter Addon for-Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedNov 25, 2019
PHP min version
Downloads990

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Product Filter Addon for-Woocommerce Developer Profile

saiful.total

4 plugins · 90 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Filter Addon for-Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-filter-addon-for-woocommerce/assets/css/nss_product_filter_style.css/wp-content/plugins/product-filter-addon-for-woocommerce/assets/js/nss_product_filter_script.js
Script Paths
assets/js/nss_product_filter_script.js
Version Parameters
nss_product_filter_style.css?ver=nss_product_filter_script.js?ver=

HTML / DOM Fingerprints

JS Globals
nssProduct_ajax
FAQ

Frequently Asked Questions about Product Filter Addon for-Woocommerce