Quick Buy Now Button for WooCommerce Security & Risk Analysis

wordpress.org/plugins/quick-buy-now-button-for-woocommerce

WooCommerce Buy Now Button makes your customers' checkout process easier and faster.

30K active installs v1.1.2 PHP 7.4+ WP 4.8+ Updated Mar 20, 2026
buy-nowbuy-now-buttonquick-buywoocommerce-direct-checkoutwoocommerce-quick-buy
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quick Buy Now Button for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Quick Buy Now Button for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "quick-buy-now-button-for-woocommerce" plugin version 1.1.1 exhibits a strong security posture. The absence of known CVEs and the plugin's clean code signals, particularly regarding the use of prepared statements for all SQL queries and near-perfect output escaping, are highly positive indicators. The limited attack surface, with all entry points (AJAX handlers and shortcodes) being protected by either nonces or capability checks (implicitly, as no raw AJAX handlers without auth were found), further strengthens its security.

While the taint analysis showed no flows, indicating no immediate vulnerabilities related to data sanitization or unsanitized paths, the lack of explicit capability checks on AJAX handlers is a potential concern. Although the analysis states "0 without auth checks" for AJAX handlers, the sole mention of a nonce check might not fully cover all authorization scenarios, leaving a minor theoretical gap. The vulnerability history being completely clean is excellent but doesn't entirely absolve a plugin from future risks, especially in complex ecosystems like WooCommerce.

In conclusion, this plugin appears to be well-developed from a security perspective. Its strengths lie in its robust handling of database queries and output, along with a minimal and protected attack surface. The minor area for improvement is ensuring comprehensive capability checks are consistently applied to all AJAX endpoints, beyond just nonce verification, to fully mitigate potential authorization bypasses. Overall, the risk is assessed as very low.

Key Concerns

  • Missing capability checks on AJAX handlers
Vulnerabilities
None known

Quick Buy Now Button for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Quick Buy Now Button for WooCommerce Release Timeline

v1.1.2Current
v1.1.1
v1.1.0
v1.0.16
v1.0.15
v1.0.14
v1.0.13
v1.0.12
v1.0.11
v1.0.10
v1.0.9
v1.0.8
v1.0.7
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Quick Buy Now Button for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
278 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped281 total outputs
Attack Surface

Quick Buy Now Button for WooCommerce Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 2

authwp_ajax_wbnb_add_to_cartincludes\class-woo_buy_now_button_frontend.php:50
noprivwp_ajax_wbnb_add_to_cartincludes\class-woo_buy_now_button_frontend.php:51

Shortcodes 2

[woo_buy_now_button_single] includes\class-woo_buy_now_button_frontend.php:44
[woo_buy_now_button_archive] includes\class-woo_buy_now_button_frontend.php:45
WordPress Hooks 21
actioninitincludes\class-woo_buy_now_button.php:51
actionadmin_enqueue_scriptsincludes\class-woo_buy_now_button_backend.php:31
filterplugin_row_metaincludes\class-woo_buy_now_button_backend.php:33
filterwoocommerce_get_settings_pagesincludes\class-woo_buy_now_button_backend.php:34
actionadmin_menuincludes\class-woo_buy_now_button_backend.php:35
filterwoocommerce_product_data_tabsincludes\class-woo_buy_now_button_backend.php:37
actionwoocommerce_product_data_panelsincludes\class-woo_buy_now_button_backend.php:38
actiontemplate_redirectincludes\class-woo_buy_now_button_frontend.php:32
actionwp_enqueue_scriptsincludes\class-woo_buy_now_button_frontend.php:33
filterwoo_buy_now_button_is_disableincludes\class-woo_buy_now_button_frontend.php:47
actionwp_footerincludes\class-woo_buy_now_button_frontend.php:54
actionwoocommerce_after_add_to_cart_buttonincludes\class-woo_buy_now_button_frontend.php:295
actionwoocommerce_after_add_to_cart_quantityincludes\class-woo_buy_now_button_frontend.php:297
actionwoocommerce_after_shop_loop_itemincludes\class-woo_buy_now_button_frontend.php:308
actionwoocommerce_after_shop_loop_itemincludes\class-woo_buy_now_button_frontend.php:310
actionastra_woo_shop_add_to_cart_afterincludes\themes-support.php:19
actionastra_woo_shop_add_to_cart_beforeincludes\themes-support.php:22
actioninitincludes\themes-support.php:26
actionadmin_noticesquick-buy-now-button-for-woocommerce.php:60
actionplugins_loadedquick-buy-now-button-for-woocommerce.php:77
actionbefore_woocommerce_initquick-buy-now-button-for-woocommerce.php:88
Maintenance & Trust

Quick Buy Now Button for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 20, 2026
PHP min version7.4
Downloads144K

Community Trust

Rating100/100
Number of ratings10
Active installs30K
Developer Profile

Quick Buy Now Button for WooCommerce Developer Profile

Tanvirul Haque

5 plugins · 72K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Quick Buy Now Button for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quick-buy-now-button-for-woocommerce/build/admin.css/wp-content/plugins/quick-buy-now-button-for-woocommerce/build/admin.js
Script Paths
/wp-content/plugins/quick-buy-now-button-for-woocommerce/build/admin.js
Version Parameters
quick-buy-now-button-for-woocommerce/build/admin.css?ver=quick-buy-now-button-for-woocommerce/build/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
woo-buy-now-button-admin-style
Data Attributes
page="wc-settings"tab="woo-buy-now-button"
FAQ

Frequently Asked Questions about Quick Buy Now Button for WooCommerce