Product Image Hover Effects WOOC – WPSHARE247 Security & Risk Analysis

wordpress.org/plugins/product-image-hover-effects-wooc-wpshare247

Add effects when hovering over product Loop woocommerce, display more photo gallery, enlarge product photo gallery Thêm hiệu ứng khi hover sản phẩm L …

900 active installs v1.0.7 PHP 5.6+ WP 4.9+ Updated May 2, 2023
effectproduct-hoverproduct-shadowwoocwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Product Image Hover Effects WOOC – WPSHARE247 Safe to Use in 2026?

Generally Safe

Score 85/100

Product Image Hover Effects WOOC – WPSHARE247 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The plugin "product-image-hover-effects-wooc-wpshare247" version 1.0.7 presents a mixed security picture. On the positive side, the static analysis indicates a very small attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed without proper checks. This suggests the developers have been mindful of limiting entry points into the plugin. Furthermore, there are no known vulnerabilities (CVEs) associated with this plugin, which is a strong indicator of a well-maintained codebase.

However, significant concerns arise from the code analysis. The complete lack of output escaping for all 78 outputs is a critical flaw, leaving the plugin highly susceptible to Cross-Site Scripting (XSS) attacks. Additionally, the single SQL query found is not using prepared statements, which is a risk for SQL Injection vulnerabilities. The absence of nonce checks and capability checks, coupled with zero unprotected entry points, is somewhat contradictory and warrants further investigation to understand how these are handled or if they are simply not applicable due to the limited entry points. The lack of any taint analysis findings or dangerous functions is a positive sign, but it does not mitigate the direct risks identified in output handling and SQL queries.

In conclusion, while the plugin benefits from a small attack surface and no historical vulnerabilities, the current version has critical security weaknesses related to output escaping and SQL query preparation. These issues, if exploited, could lead to significant security compromises. The absence of any explicit authorization checks on entry points, despite reporting zero unprotected ones, is also a point of caution. It's essential to address the XSS and SQL injection risks to improve the plugin's security posture.

Key Concerns

  • 0% output escaping
  • 0% SQL queries using prepared statements
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

Product Image Hover Effects WOOC – WPSHARE247 Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Product Image Hover Effects WOOC – WPSHARE247 Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
78
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

0% escaped78 total outputs
Attack Surface

Product Image Hover Effects WOOC – WPSHARE247 Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 19
actionadmin_menuinc\class.setting.page.php:12
actionadmin_initinc\class.setting.page.php:13
actionadmin_enqueue_scriptsinc\class.setting.page.php:14
filterplugin_action_linksinc\class.setting.page.php:15
actionwp_enqueue_scriptsinc\class.setting.page.php:16
actionplugins_loadedinc\class.setting.page.php:17
actionwoocommerce_before_shop_loop_iteminc\theme_functions.php:24
actionwoocommerce_after_shop_loop_iteminc\theme_functions.php:25
actionflatsome_woocommerce_shop_loop_imagesinc\theme_functions.php:28
actionflatsome_woocommerce_shop_loop_imagesinc\theme_functions.php:29
actionwoocommerce_before_shop_loop_item_titleinc\theme_functions.php:31
actionwoocommerce_before_shop_loop_item_titleinc\theme_functions.php:32
filterwoocommerce_loop_add_to_cart_argsinc\theme_functions.php:37
actionwp_headinc\theme_functions.php:46
actionwoocommerce_after_shop_loop_iteminc\theme_functions.php:120
actionwoocommerce_after_shop_loop_iteminc\theme_functions.php:121
actioninitinc\theme_functions.php:122
actionws247_piew_effect_overflowinc\theme_functions.php:131
filterwoocommerce_loop_add_to_cart_argsinc\theme_functions.php:133
Maintenance & Trust

Product Image Hover Effects WOOC – WPSHARE247 Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedMay 2, 2023
PHP min version5.6
Downloads21K

Community Trust

Rating100/100
Number of ratings1
Active installs900
Developer Profile

Product Image Hover Effects WOOC – WPSHARE247 Developer Profile

Website366.com

7 plugins · 5K total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Image Hover Effects WOOC – WPSHARE247

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/admin_piew.css/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/admin_piew.js/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/piew.css/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.css/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js
Script Paths
/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/admin_piew.js/wp-content/plugins/product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js
Version Parameters
product-image-hover-effects-wooc-wpshare247/inc/admin_piew.css?ver=1.0product-image-hover-effects-wooc-wpshare247/inc/admin_piew.js?ver=1.0product-image-hover-effects-wooc-wpshare247/inc/piew.css?ver=1.0product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.css?ver=3.5.7product-image-hover-effects-wooc-wpshare247/inc/js/fancybox/dist/jquery.fancybox.min.js?ver=3.5.7

HTML / DOM Fingerprints

CSS Classes
ws247-piew-hoverws247_piew_atc
Data Attributes
data-fancybox
FAQ

Frequently Asked Questions about Product Image Hover Effects WOOC – WPSHARE247