Product Quantity Report By Order for Woocommerce Security & Risk Analysis

wordpress.org/plugins/product-quantity-report-by-order-for-woocommerce

List and export product quantity report by each order at one place.

10 active installs v1.0.0 PHP + WP 3.0.0+ Updated Aug 12, 2016
csv-exportorderproductreportwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Product Quantity Report By Order for Woocommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Product Quantity Report By Order for Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The static analysis of "product-quantity-report-by-order-for-woocommerce" v1.0.0 reveals a generally good security posture, with no identified AJAX handlers, REST API routes, shortcodes, or cron events. This significantly limits the potential attack surface. Furthermore, the absence of dangerous functions, external HTTP requests, and taint flows with unsanitized paths is commendable. All SQL queries are properly prepared, mitigating SQL injection risks.

However, there are several areas of concern. The plugin exhibits a low level of output escaping, with only 25% of identified outputs being properly escaped. This indicates a potential risk of Cross-Site Scripting (XSS) vulnerabilities, particularly if user-supplied data is being reflected in the output without sufficient sanitization. The complete lack of nonce checks and capability checks for any potential entry points is also a significant weakness, as it allows unauthenticated or unauthorized users to potentially interact with plugin functionalities, even if the current attack surface is reported as zero. The presence of file operations also warrants closer inspection to ensure secure handling.

The vulnerability history is clean, with no known CVEs recorded. This, combined with the limited attack surface and good SQL practices, suggests the plugin has been developed with some security awareness. Nevertheless, the identified weaknesses in output escaping and authorization checks, despite the current zero-attack surface, present a latent risk that could be exploited if the plugin's functionality were to expand or if new entry points are introduced in future versions without addressing these fundamental security controls.

Key Concerns

  • Output escaping is significantly lacking (25%)
  • No nonce checks implemented
  • No capability checks implemented
  • File operations present
Vulnerabilities
None known

Product Quantity Report By Order for Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Product Quantity Report By Order for Woocommerce Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Product Quantity Report By Order for Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

25% escaped8 total outputs
Attack Surface

Product Quantity Report By Order for Woocommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actioninitproduct-wise-order-export-for-woocommerce-by-vk.php:34
actionadmin_initproduct-wise-order-export-for-woocommerce-by-vk.php:37
actionadmin_menuproduct-wise-order-export-for-woocommerce-by-vk.php:40
actionadmin_enqueue_scriptsproduct-wise-order-export-for-woocommerce-by-vk.php:43
Maintenance & Trust

Product Quantity Report By Order for Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested4.6.30
Last updatedAug 12, 2016
PHP min version
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Product Quantity Report By Order for Woocommerce Developer Profile

Vishal Kakadiya

2 plugins · 20 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Quantity Report By Order for Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-quantity-report-by-order-for-woocommerce/assets/css/admin-custom.css/wp-content/plugins/product-quantity-report-by-order-for-woocommerce/assets/js/admin-custom.js

HTML / DOM Fingerprints

CSS Classes
wpqo-mainsl-vc-settings-headingsl-vc-settings-sub-headingwpwo-datepicker
Data Attributes
name="from_date"name="to_date"name="order_status[]"name="wpwo_display_report"name="wpwo_export_report"id="wpwo-from-date"+1 more
FAQ

Frequently Asked Questions about Product Quantity Report By Order for Woocommerce