Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Security & Risk Analysis

wordpress.org/plugins/quick-cart-shopping

Transform your WooCommerce store with a beautiful floating cart. Let customers shop faster with side cart, drag & drop, and instant checkout.

0 active installs v1.0.3 PHP 7.4+ WP 5.8+ Updated Jan 21, 2026
floating-cartinstant-checkouton-page-checkoutside-cartwoocommerce-cart
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "quick-cart-shopping" plugin version 1.0.3 presents a concerning security posture primarily due to a significantly exposed attack surface. While the code shows good practices in avoiding dangerous functions, using prepared statements for SQL, and proper output escaping, the overwhelming number of unprotected AJAX handlers is a critical flaw. With all 16 AJAX handlers lacking authentication checks, an unauthenticated attacker could potentially trigger any of these functions, leading to various security issues depending on their implementation.

The absence of any taint analysis findings or a history of known vulnerabilities might suggest a lack of active exploitation or previous diligent patching. However, this does not negate the inherent risks posed by the unprotected AJAX endpoints. The presence of 14 nonce checks and 7 capability checks on some of these handlers is a positive sign that some level of security was intended, but their absence on all handlers is a major oversight.

In conclusion, while the plugin demonstrates strengths in certain areas like SQL and output handling, the critical vulnerability of unprotected AJAX handlers dominates the risk assessment. This plugin requires immediate attention to secure these entry points to mitigate potential unauthorized access and malicious actions.

Key Concerns

  • All AJAX handlers lack authentication checks
  • Large attack surface with 16 unprotected entry points
Vulnerabilities
None known

Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
71 escaped
Nonce Checks
14
Capability Checks
7
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped71 total outputs
Attack Surface
16 unprotected

Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Attack Surface

Entry Points16
Unprotected16

AJAX Handlers 16

authwp_ajax_qcshopping_get_cart_itemsapps\FrontEnd\CartHandler.php:28
noprivwp_ajax_qcshopping_get_cart_itemsapps\FrontEnd\CartHandler.php:29
authwp_ajax_qcshopping_update_cart_itemapps\FrontEnd\CartHandler.php:31
noprivwp_ajax_qcshopping_update_cart_itemapps\FrontEnd\CartHandler.php:32
authwp_ajax_qcshopping_remove_cart_itemapps\FrontEnd\CartHandler.php:34
noprivwp_ajax_qcshopping_remove_cart_itemapps\FrontEnd\CartHandler.php:35
authwp_ajax_qcshopping_get_variable_productapps\FrontEnd\CartHandler.php:37
noprivwp_ajax_qcshopping_get_variable_productapps\FrontEnd\CartHandler.php:38
authwp_ajax_qcshopping_add_to_cartapps\FrontEnd\CartHandler.php:40
noprivwp_ajax_qcshopping_add_to_cartapps\FrontEnd\CartHandler.php:41
authwp_ajax_qcshopping_apply_couponapps\FrontEnd\CartHandler.php:43
noprivwp_ajax_qcshopping_apply_couponapps\FrontEnd\CartHandler.php:44
authwp_ajax_qcshopping_remove_couponapps\FrontEnd\CartHandler.php:46
noprivwp_ajax_qcshopping_remove_couponapps\FrontEnd\CartHandler.php:47
authwp_ajax_qcshopping_update_shipping_methodapps\FrontEnd\CartHandler.php:49
noprivwp_ajax_qcshopping_update_shipping_methodapps\FrontEnd\CartHandler.php:50
WordPress Hooks 15
actionadmin_menuapps\Admin\Menu.php:26
actionrest_api_initapps\Api\Api.php:32
actionwp_enqueue_scriptsapps\Assets.php:22
actionadmin_enqueue_scriptsapps\Assets.php:23
filterscript_loader_tagapps\Assets.php:24
actionin_admin_headerapps\Assets.php:25
actionwp_footerapps\FrontEnd\CartToggleRenderer.php:22
actionwp_enqueue_scriptsapps\FrontEnd\FrontEnd_Assets.php:21
filterscript_loader_tagapps\FrontEnd\FrontEnd_Assets.php:22
filteradmin_footer_textapps\Helper\AdminFooterText.php:13
actionplugins_loadedquick-cart-shopping.php:43
actionadmin_noticesquick-cart-shopping.php:44
actionadmin_initquick-cart-shopping.php:45
actionadmin_noticesquick-cart-shopping.php:91
actionbefore_woocommerce_initquick-cart-shopping.php:101
Maintenance & Trust

Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 21, 2026
PHP min version7.4
Downloads159

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce Developer Profile

Giant WP Solutions

3 plugins · 80 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quick-cart-shopping/assets/css/qcs-cart-position.css/wp-content/plugins/quick-cart-shopping/assets/js/qcs-cart-position.js
Script Paths
/wp-content/plugins/quick-cart-shopping/dist/assets/main.js
Version Parameters
quick-cart-shopping/assets/css/qcs-cart-position.css?ver=quick-cart-shopping/assets/js/qcs-cart-position.js?ver=quick-cart-shopping/dist/assets/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
qcshopping-admin-noticeqcshopping-main-admin-wrap
HTML Comments
<!-- Quick Cart Shopping -->
Data Attributes
data-qcshopping-settings-navdata-qcshopping-page-title
JS Globals
qcshoppingParamsqcshoppingPluginData
REST Endpoints
/wp-json/quick-cart-shopping/v1/settings
FAQ

Frequently Asked Questions about Quick Cart Shopping – Floating Cart & Instant Checkout for WooCommerce