Product Selector Recommendation Quiz for WooCommerce Security & Risk Analysis

wordpress.org/plugins/product-selector-guide-and-finder-for-woocommerce

Expand the capabilities of your WordPress site with Velocity Plugins. Our unique product selector tool helps your users find the right product, leadin …

40 active installs v1.0.8 PHP + WP 6.0.0+ Updated Oct 2, 2024
productsquizselectorvelocitypluginswoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Product Selector Recommendation Quiz for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

Product Selector Recommendation Quiz for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin exhibits a generally positive security posture with several good practices observed. The complete absence of SQL injection vulnerabilities, with all queries utilizing prepared statements, and a high percentage of properly escaped output are significant strengths. The lack of file operations and external HTTP requests further reduces potential attack vectors. The plugin's vulnerability history is also clean, indicating a sustained effort to maintain security.

However, the plugin has a notable concern regarding its attack surface. A significant portion of its AJAX handlers (11 out of 11) lack authentication checks. This means that any unauthenticated user could potentially trigger these AJAX actions, presenting a substantial risk if these handlers are not robustly secured internally. While the taint analysis shows no issues, the unprotected AJAX handlers represent a primary area of concern for potential privilege escalation or denial-of-service attacks.

In conclusion, while the plugin demonstrates strong foundational security practices, the unprotected AJAX endpoints are a critical weakness that needs immediate attention. The absence of historical vulnerabilities is a positive sign, but it does not mitigate the current risk posed by the exposed attack surface. Addressing the authentication checks on AJAX handlers should be the top priority to improve the plugin's overall security.

Key Concerns

  • Unprotected AJAX handlers
  • Bundled outdated library (Select2 v4.0.13)
Vulnerabilities
None known

Product Selector Recommendation Quiz for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Product Selector Recommendation Quiz for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
65 escaped
Nonce Checks
9
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select24.0.13

Output Escaping

94% escaped69 total outputs
Attack Surface
11 unprotected

Product Selector Recommendation Quiz for WooCommerce Attack Surface

Entry Points12
Unprotected11

AJAX Handlers 11

authwp_ajax_velo_product_selector_select_and_createincludes\class-velo-product-selector-free.php:110
authwp_ajax_velo_create_selectorincludes\class-velo-product-selector-free.php:111
authwp_ajax_velo_get_form_to_create_selectorincludes\class-velo-product-selector-free.php:112
authwp_ajax_velo_get_single_product_selector_editorincludes\class-velo-product-selector-free.php:113
authwp_ajax_velo_search_posts_callbackincludes\class-velo-product-selector-free.php:114
authwp_ajax_velo_save_edited_product_selectorincludes\class-velo-product-selector-free.php:115
authwp_ajax_velo_delete_product_selectorincludes\class-velo-product-selector-free.php:116
authwp_ajax_velo_get_product_selector_dataincludes\class-velo-product-selector-free.php:139
noprivwp_ajax_velo_get_product_selector_dataincludes\class-velo-product-selector-free.php:140
authwp_ajax_velo_get_html_data_for_final_itemincludes\class-velo-product-selector-free.php:141
noprivwp_ajax_velo_get_html_data_for_final_itemincludes\class-velo-product-selector-free.php:142

Shortcodes 1

[velo_show_product_selector] includes\class-velo-product-selector-free.php:133
WordPress Hooks 8
actionadmin_initadmin\class-velo-product-selector-free-admin-backend-pages.php:33
actionadmin_enqueue_scriptsincludes\class-velo-product-selector-free.php:100
actionadmin_enqueue_scriptsincludes\class-velo-product-selector-free.php:101
actioninitincludes\class-velo-product-selector-free.php:104
actionadmin_menuincludes\class-velo-product-selector-free.php:107
actionwp_enqueue_scriptsincludes\class-velo-product-selector-free.php:129
actionwp_enqueue_scriptsincludes\class-velo-product-selector-free.php:130
filtertemplate_includeincludes\class-velo-product-selector-free.php:136
Maintenance & Trust

Product Selector Recommendation Quiz for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedOct 2, 2024
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs40
Developer Profile

Product Selector Recommendation Quiz for WooCommerce Developer Profile

velocityplugins

4 plugins · 50 total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Product Selector Recommendation Quiz for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/css/velo-product-selector-free-admin.css/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/select2-4.0.13/select2.css/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/uikit-3.21.5/css/uikit.min.css/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/select2-4.0.13/select2.js/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/uikit-3.21.5/js/uikit.min.js/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/uikit-3.21.5/js/uikit-icons.min.js/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/sortable-1.15.2/js/sortable.min.js/wp-content/plugins/product-selector-guide-and-finder-for-woocommerce/admin/library/sortable-1.15.2/js/jquery-sortable.js+1 more
Script Paths
admin/js/velo-product-selector-free-admin.js
Version Parameters
product-selector-guide-and-finder-for-woocommerce/admin/css/velo-product-selector-free-admin.css?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/select2-4.0.13/select2.css?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/uikit-3.21.5/css/uikit.min.css?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/select2-4.0.13/select2.js?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/uikit-3.21.5/js/uikit.min.js?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/uikit-3.21.5/js/uikit-icons.min.js?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/sortable-1.15.2/js/sortable.min.js?ver=product-selector-guide-and-finder-for-woocommerce/admin/library/sortable-1.15.2/js/jquery-sortable.js?ver=product-selector-guide-and-finder-for-woocommerce/admin/js/velo-product-selector-free-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
velo-product-selector-free-admin-css
Data Attributes
data-velo-product-selector-settings
JS Globals
velo_product_selector
FAQ

Frequently Asked Questions about Product Selector Recommendation Quiz for WooCommerce