Quasar form – add-on for WooCommerce Security & Risk Analysis

wordpress.org/plugins/quasar-form-woo-add-on

Allows you to use forms from the Quasar Form plugin as quick order forms in Woocommerce

40 active installs v1.7 PHP 5.6+ WP 4.8+ Updated Apr 4, 2023
buy-one-click-woocommercewoocommerce-form
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quasar form – add-on for WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Quasar form – add-on for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The static analysis of quasar-form-woo-add-on v1.7 reveals a generally good security posture. The plugin demonstrates a commitment to secure coding practices with 100% of its AJAX handlers and REST API routes being protected by authentication and permission checks respectively. Furthermore, the absence of shortcodes, cron events, file operations, and external HTTP requests significantly limits the potential attack surface. The code signals also show a reasonable application of security measures, with nonce checks and capability checks present, and a majority of SQL queries utilizing prepared statements. However, a concerning aspect is that 78% of SQL queries are not using prepared statements, which could expose the plugin to SQL injection vulnerabilities if not handled with extreme care in the un-prepared queries. The lack of any recorded CVEs, including critical or high severity vulnerabilities, and no recent vulnerabilities suggest a well-maintained and secure plugin history. While the absence of critical taint flows and dangerous functions is a strong positive, the reliance on non-prepared SQL statements presents a potential weakness.

Key Concerns

  • SQL queries not using prepared statements
  • Non-trivial percentage of SQL not prepared
Vulnerabilities
None known

Quasar form – add-on for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Quasar form – add-on for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
7
2 prepared
Unescaped Output
71
159 escaped
Nonce Checks
3
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

22% prepared9 total queries

Output Escaping

69% escaped230 total outputs
Attack Surface

Quasar form – add-on for WooCommerce Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 4

authwp_ajax_save_woo_settingquasar-form-shop-main.php:291
authwp_ajax_send_woo_formquasar-form-shop-main.php:293
noprivwp_ajax_send_woo_formquasar-form-shop-main.php:294
authwp_ajax_save_shop_import_setting_qquasar-form-shop-main.php:442
WordPress Hooks 10
actionadmin_menuquasar-form-shop-main.php:19
actionplugins_loadedquasar-form-shop-main.php:52
actionwp_footerquasar-form-shop-main.php:71
actionadmin_enqueue_scriptsquasar-form-shop-main.php:119
actionwoocommerce_after_add_to_cart_buttonquasar-form-shop-main.php:217
actionwoocommerce_before_quantity_input_fieldquasar-form-shop-main.php:227
actionwoocommerce_single_product_summaryquasar-form-shop-main.php:236
actionwoocommerce_product_meta_endquasar-form-shop-main.php:245
actionwoocommerce_after_shop_loop_itemquasar-form-shop-main.php:255
actionwoocommerce_before_shop_loop_itemquasar-form-shop-main.php:272
Maintenance & Trust

Quasar form – add-on for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedApr 4, 2023
PHP min version5.6
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

Quasar form – add-on for WooCommerce Developer Profile

nucleusgenius

2 plugins · 50 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Quasar form – add-on for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quasar-form-woo-add-on/assets/css/frontend.css/wp-content/plugins/quasar-form-woo-add-on/assets/js/frontend.js/wp-content/plugins/quasar-form-woo-add-on/assets/js/admin.js/wp-content/plugins/quasar-form-woo-add-on/assets/font-awesome/css/font-awesome.min.css/wp-content/plugins/quasar-form-woo-add-on/assets/css/admin.css/wp-content/plugins/quasar-form-woo-add-on/lib/wp-color-picker-alpha-master/dist/wp-color-picker-alpha.min.js
Version Parameters
quasar-form-woo-add-on/assets/css/frontend.css?ver=quasar-form-woo-add-on/assets/js/frontend.js?ver=quasar-form-woo-add-on/assets/js/admin.js?ver=quasar-form-woo-add-on/assets/font-awesome/css/font-awesome.min.css?ver=quasar-form-woo-add-on/assets/css/admin.css?ver=quasar-form-woo-add-on/lib/wp-color-picker-alpha-master/dist/wp-color-picker-alpha.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
quasar-woo-admin-scriptQuasar-form-font-awesomeQuasar-form-admin-styleQuasar-form-color-picker-alpha
Data Attributes
dataFormdataTextButtondataPositiondataPosition2dataIdFormdataCreateOrder+48 more
JS Globals
paramslocalizationColor
FAQ

Frequently Asked Questions about Quasar form – add-on for WooCommerce