qTranslate loves WPEC Security & Risk Analysis

wordpress.org/plugins/qtranslate-loves-wp-e-commerce

Adds translatable form fields for wp e-commerce taxonomies (product categories, variations and product tags).

10 active installs v1.0 PHP + WP 3.0.1+ Updated Feb 27, 2014
qtranslatetranslationwp-e-commercewpec
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is qTranslate loves WPEC Safe to Use in 2026?

Generally Safe

Score 85/100

qTranslate loves WPEC has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 12yr ago
Risk Assessment

The static analysis of "qtranslate-loves-wp-e-commerce" v1.0 reveals an exceptionally small attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events. The code also demonstrates excellent security practices, showing no dangerous functions, no raw SQL queries (all use prepared statements), and all output is properly escaped. There are no file operations, external HTTP requests, or indications of missing nonce or capability checks. Taint analysis also found no unsanitized paths. The plugin's vulnerability history is clean, with zero known CVEs, indicating a consistent track record of security. This plugin exhibits a strong security posture based on the provided data. However, the absence of entry points and checks could be due to the plugin's limited functionality or integration, rather than exhaustive security measures. A potential concern, though not explicitly a flaw, is the complete lack of any entry points or security checks, which might suggest a very basic function or, conversely, an oversight in how certain interactions might be intended. Nevertheless, based solely on the provided static analysis and historical data, the plugin appears highly secure.

Vulnerabilities
None known

qTranslate loves WPEC Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

qTranslate loves WPEC Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

qTranslate loves WPEC Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwpsc-variation_add_formqtloveswpec.php:32
actionwpsc-variation_edit_formqtloveswpec.php:33
actionwpsc_product_category_add_formqtloveswpec.php:37
actionwpsc_product_category_edit_formqtloveswpec.php:38
actionproduct_tag_add_formqtloveswpec.php:42
actionproduct_tag_edit_formqtloveswpec.php:43
Maintenance & Trust

qTranslate loves WPEC Maintenance & Trust

Maintenance Signals

WordPress version tested3.7.41
Last updatedFeb 27, 2014
PHP min version
Downloads2K

Community Trust

Rating90/100
Number of ratings2
Active installs10
Developer Profile

qTranslate loves WPEC Developer Profile

stereohero

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect qTranslate loves WPEC

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about qTranslate loves WPEC