
Product Image Hover Effects WOOC – WPSHARE247 Security & Risk Analysis
wordpress.org/plugins/product-image-hover-effects-wooc-wpshare247Add effects when hovering over product Loop woocommerce, display more photo gallery, enlarge product photo gallery Thêm hiệu ứng khi hover sản phẩm L …
Is Product Image Hover Effects WOOC – WPSHARE247 Safe to Use in 2026?
Generally Safe
Score 85/100Product Image Hover Effects WOOC – WPSHARE247 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "product-image-hover-effects-wooc-wpshare247" version 1.0.7 presents a mixed security picture. On the positive side, the static analysis indicates a very small attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed without proper checks. This suggests the developers have been mindful of limiting entry points into the plugin. Furthermore, there are no known vulnerabilities (CVEs) associated with this plugin, which is a strong indicator of a well-maintained codebase.
However, significant concerns arise from the code analysis. The complete lack of output escaping for all 78 outputs is a critical flaw, leaving the plugin highly susceptible to Cross-Site Scripting (XSS) attacks. Additionally, the single SQL query found is not using prepared statements, which is a risk for SQL Injection vulnerabilities. The absence of nonce checks and capability checks, coupled with zero unprotected entry points, is somewhat contradictory and warrants further investigation to understand how these are handled or if they are simply not applicable due to the limited entry points. The lack of any taint analysis findings or dangerous functions is a positive sign, but it does not mitigate the direct risks identified in output handling and SQL queries.
In conclusion, while the plugin benefits from a small attack surface and no historical vulnerabilities, the current version has critical security weaknesses related to output escaping and SQL query preparation. These issues, if exploited, could lead to significant security compromises. The absence of any explicit authorization checks on entry points, despite reporting zero unprotected ones, is also a point of caution. It's essential to address the XSS and SQL injection risks to improve the plugin's security posture.
Key Concerns
- 0% output escaping
- 0% SQL queries using prepared statements
- No nonce checks
- No capability checks
Product Image Hover Effects WOOC – WPSHARE247 Security Vulnerabilities
Product Image Hover Effects WOOC – WPSHARE247 Code Analysis
SQL Query Safety
Output Escaping
Product Image Hover Effects WOOC – WPSHARE247 Attack Surface
WordPress Hooks 19
Maintenance & Trust
Product Image Hover Effects WOOC – WPSHARE247 Maintenance & Trust
Maintenance Signals
Community Trust
Product Image Hover Effects WOOC – WPSHARE247 Alternatives
Image Hover Effects For WooCommerce Products
image-hover-effects-for-woocommerce-products
Allow user to display there woocommerce products with css3 animation effects any where they want.
Essential Addons for Elementor – Popular Elementor Templates & Widgets
essential-addons-for-elementor-lite
Elementor addon offering 110+ widgets and templates — Elementor Gallery, Slider, Form, Post Grid, Menu, Accordion, WooCommerce & more.
Google for WooCommerce
google-listings-and-ads
Native integration with Google that allows merchants to easily display their products across Google’s network.
WooPayments: Integrated WooCommerce Payments
woocommerce-payments
Securely accept credit and debit cards on your WooCommerce store. Manage payments without leaving your WordPress dashboard. Only with WooPayments.
WooCommerce PayPal Payments
woocommerce-paypal-payments
PayPal's latest payment processing solution. Accept PayPal, Pay Later, credit/debit cards, alternative digital wallets and bank accounts.
Product Image Hover Effects WOOC – WPSHARE247 Developer Profile
7 plugins · 5K total installs
How We Detect Product Image Hover Effects WOOC – WPSHARE247
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/admin_piew.css/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/admin_piew.js/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/piew.css/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.css/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/admin_piew.js/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.jsproduct-image-hover-effects-wooc-wpshare247/inc/admin_piew.css?ver=1.0product-image-hover-effects-wooc-wpshare247/inc/admin_piew.js?ver=1.0product-image-hover-effects-wooc-wpshare247/inc/piew.css?ver=1.0product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.css?ver=3.5.7product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js?ver=3.5.7HTML / DOM Fingerprints
ws247-piew-hoverws247_piew_atcdata-fancybox