
Product Info Request for WooCommerce Security & Risk Analysis
wordpress.org/plugins/product-info-request-for-woocommerceSend info product request with a form ( Contact Form 7 shortcode) in single product of WooCommerce.
Is Product Info Request for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Product Info Request for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "product-info-request-for-woocommerce" plugin version 1.0 exhibits a concerning security posture primarily due to its complete lack of output escaping. While the static analysis reveals no immediately exploitable attack surface (no AJAX, REST API, shortcodes, or cron events without authentication), the absence of any output escaping on the two identified output points is a significant weakness. This could lead to Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is ever rendered directly in the output without proper sanitization.
The plugin's code signals also indicate a strong adherence to secure SQL practices, with all queries using prepared statements. There are no detected dangerous functions, file operations, external HTTP requests, or bundled libraries that would typically raise red flags. Furthermore, the absence of known vulnerabilities in its history suggests a generally well-maintained codebase. However, this positive trend is heavily overshadowed by the critical oversight in output sanitization, which is a fundamental security best practice.
Key Concerns
- No output escaping
Product Info Request for WooCommerce Security Vulnerabilities
Product Info Request for WooCommerce Code Analysis
Output Escaping
Product Info Request for WooCommerce Attack Surface
WordPress Hooks 4
Maintenance & Trust
Product Info Request for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Product Info Request for WooCommerce Alternatives
BannerWoo
bannerwoo
Sell banner ads on autopilot with WooCommerce. Simple, clean and lightweight.
Add Linkedin insight tags for Linkedin ads
lktags-linkedin-insight-tags
The Linkedin Insight tag plugin allows to add strategically your Insight tag on all your webpages. No need to edit your theme files anymore!
Product Feed for Google Shopping, Microsoft Advertising and 40+ Channels for WooCommerce Merchant
shopping-feed-for-google
Automate real-time product syncing to Google, Microsoft & Facebook from WooCommerce. Launch campaigns and track interactions with Google Analytics 4.
WP Bannerize Pro
wp-bannerize-pro
Bannerize simplifies banner creation and management. Track views and clicks to gauge campaign success.
AdPlugg WordPress Ad Plugin
adplugg
Advertising is easy with AdPlugg. The AdPlugg WordPress Ad Plugin and ad server allow you to easily manage, schedule, rotate and track your ads.
Product Info Request for WooCommerce Developer Profile
4 plugins · 610 total installs
How We Detect Product Info Request for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
do_shortcode($options['pirw_text_field_0'])