Product Recommendation Quiz for eCommerce Security & Risk Analysis

wordpress.org/plugins/product-recommendation-quiz-for-ecommerce

Turn shoppers into leads and buyers with interactive product recommendation quizzes.

2K active installs v2.3.3 PHP 5.6+ WP 3.0.1+ Updated Feb 22, 2026
ecommercepersonalizationproduct-recommendationquizwoocommerce
100
A · Safe
CVEs total1
Unpatched0
Last CVEOct 25, 2023
Safety Verdict

Is Product Recommendation Quiz for eCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Product Recommendation Quiz for eCommerce has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Oct 25, 2023Updated 1mo ago
Risk Assessment

The static analysis of "product-recommendation-quiz-for-ecommerce" v2.3.3 indicates a generally good security posture with several strong practices observed. Notably, there are no dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. The plugin also demonstrates awareness of security by including a capability check for its entry points. However, the absence of nonce checks across its entry points, particularly for AJAX handlers (though none are present in this version, the general lack is a concern) and REST API routes, presents a significant risk for potential cross-site request forgery (CSRF) attacks if functionality were to be added or modified in future versions. The vulnerability history shows one past medium severity vulnerability, specifically a "Missing Authorization" issue. While currently patched, this pattern suggests that authorization checks have been a point of weakness for this plugin in the past and should be a primary focus for ongoing security reviews.

Key Concerns

  • Missing nonce checks on entry points
  • Past medium severity vulnerability (Missing Auth)
Vulnerabilities
1

Product Recommendation Quiz for eCommerce Security Vulnerabilities

CVEs by Year

1 CVE in 2023
2023
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2023-46631medium · 6.5Missing Authorization

Product Recommendation Quiz for eCommerce <= 2.1.0 - Missing Authorization in prq_set_token

Oct 25, 2023 Patched in 2.1.2 (90d)
Code Analysis
Analyzed Mar 16, 2026

Product Recommendation Quiz for eCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
30 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped30 total outputs
Attack Surface

Product Recommendation Quiz for eCommerce Attack Surface

Entry Points2
Unprotected0

REST API Routes 2

POST/wp-json/wc/v3prq_set_tokenproduct-recommendation-quiz-for-ecommerce.php:104
POST/wp-json/prq/v1settokenproduct-recommendation-quiz-for-ecommerce.php:297
WordPress Hooks 8
actionplugins_loadedincludes\class-product-recommendation-quiz-for-ecommerce.php:275
actionadmin_enqueue_scriptsincludes\class-product-recommendation-quiz-for-ecommerce.php:287
actionadmin_menuincludes\class-product-recommendation-quiz-for-ecommerce.php:288
actionwp_enqueue_scriptsincludes\class-product-recommendation-quiz-for-ecommerce.php:300
filterscript_loader_tagincludes\class-product-recommendation-quiz-for-ecommerce.php:301
actionrest_api_initproduct-recommendation-quiz-for-ecommerce.php:95
actionrest_api_initproduct-recommendation-quiz-for-ecommerce.php:296
actionbefore_woocommerce_initproduct-recommendation-quiz-for-ecommerce.php:304
Maintenance & Trust

Product Recommendation Quiz for eCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 22, 2026
PHP min version5.6
Downloads92K

Community Trust

Rating100/100
Number of ratings98
Active installs2K
Developer Profile

Product Recommendation Quiz for eCommerce Developer Profile

RevenueHunt

1 plugin · 2K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
90 days
View full developer profile
Detection Fingerprints

How We Detect Product Recommendation Quiz for eCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-recommendation-quiz-for-ecommerce/assets/css/prq-frontend.css/wp-content/plugins/product-recommendation-quiz-for-ecommerce/assets/js/prq-frontend.js
Script Paths
/wp-content/plugins/product-recommendation-quiz-for-ecommerce/assets/js/prq-frontend.js
Version Parameters
product-recommendation-quiz-for-ecommerce/assets/css/prq-frontend.css?ver=product-recommendation-quiz-for-ecommerce/assets/js/prq-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
prq-quiz-startprq-quiz-questionprq-quiz-result
HTML Comments
<!-- Product Recommendation Quiz for eCommerce by RevenueHunt -->
Data Attributes
data-prq-quiz-iddata-prq-product-id
JS Globals
PRQ_AjaxPRQ_Frontend
REST Endpoints
/wp-json/wc/v3/prq_set_token
Shortcode Output
[product_recommendation_quiz]
FAQ

Frequently Asked Questions about Product Recommendation Quiz for eCommerce