
Product Price by Formula for WooCommerce Security & Risk Analysis
wordpress.org/plugins/product-price-by-formula-for-woocommerceSet formula for automatic WooCommerce product price calculation.
Is Product Price by Formula for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Product Price by Formula for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "product-price-by-formula-for-woocommerce" v2.5.6 demonstrates a strong security posture based on the provided static analysis. The complete absence of AJAX handlers, REST API routes, shortcodes, or cron events without authentication or permission checks significantly limits its attack surface. The code signals also indicate good practices with all SQL queries using prepared statements and the presence of nonce and capability checks for the few identified entry points. There were no identified dangerous functions, file operations, or external HTTP requests.
However, a notable concern arises from the taint analysis, which shows 3 flows with unsanitized paths. While these are not categorized as critical or high severity, any unsanitized path represents a potential vulnerability. The static analysis also indicates that only 66% of output is properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities in specific scenarios. The plugin's vulnerability history is clean, with no known CVEs, suggesting a good track record for security maintenance.
In conclusion, the plugin exhibits many positive security attributes, particularly in its limited attack surface and robust data handling for database operations. The primary areas for improvement are addressing the unsanitized taint flows and increasing the percentage of properly escaped output to mitigate potential XSS risks. The lack of historical vulnerabilities is a strong positive indicator.
Key Concerns
- Unsanitized taint flows found
- Insufficient output escaping (66%)
Product Price by Formula for WooCommerce Security Vulnerabilities
Product Price by Formula for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Product Price by Formula for WooCommerce Attack Surface
WordPress Hooks 28
Maintenance & Trust
Product Price by Formula for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Product Price by Formula for WooCommerce Alternatives
Product Addons for Woocommerce – Product Options with Custom Fields
woo-custom-product-addons
WooCommerce Product Addons Add custom fields to your WooCommerce product page. With an easy-to-use Custom Form Builder.
PW WooCommerce Bulk Edit
pw-bulk-edit
A powerful way to update your WooCommerce product catalog. Finally, no more tedious clicking through countless pages!
WCAPF – WooCommerce Ajax Product Filter
wc-ajax-product-filter
WCAPF - WooCommerce Ajax Product Filter is a powerful plugin that enhances the filtering functionality of your WooCommerce store.
Product Visibility by User Role for WooCommerce
product-visibility-by-user-role-for-woocommerce
Display WooCommerce products by customer's user role.
Show only lowest prices in variable products for WooCommerce
show-only-lowest-prices-in-woocommerce-variable-products
Clean up your variable product prices by showing only the lowest price instead of confusing price ranges. Now with customizable settings!
Product Price by Formula for WooCommerce Developer Profile
3 plugins · 2K total installs
How We Detect Product Price by Formula for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/product-price-by-formula-for-woocommerce/includes/css/admin-style.css/wp-content/plugins/product-price-by-formula-for-woocommerce/includes/js/admin-script.js/wp-content/plugins/product-price-by-formula-for-woocommerce/includes/js/sweetalert.min.jsproduct-price-by-formula-for-woocommerce/includes/css/admin-style.css?ver=product-price-by-formula-for-woocommerce/includes/js/admin-script.js?ver=product-price-by-formula-for-woocommerce/includes/js/sweetalert.min.js?ver=HTML / DOM Fingerprints
prowc-ppbf-notice-wrapper<!-- PROWC PPBF UPDATE NOTICE --><!-- PROWC PPBF REVIEW NOTICE -->data-ppbf-formula-iddata-ppbf-product-iddata-ppbf-rule-idprowc_ppbf_data