Direct Checkout – Quick View – Buy Now For WooCommerce Security & Risk Analysis

wordpress.org/plugins/quick-view-and-buy-now-for-woocommerce

Quick View and Buy Now plugin makes the buying process easy in your store to increase conversion and encorage clients buying from your website by addi …

2K active installs v1.7 PHP 7.0+ WP 4.5.0+ Updated Dec 27, 2025
buy-nowdirect-checkoutone-click-checkoutquick-add-to-cartquick-view
100
A · Safe
CVEs total1
Unpatched0
Last CVENov 7, 2023
Safety Verdict

Is Direct Checkout – Quick View – Buy Now For WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Direct Checkout – Quick View – Buy Now For WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Nov 7, 2023Updated 3mo ago
Risk Assessment

The static analysis of quick-view-and-buy-now-for-woocommerce v1.7 reveals a generally strong security posture. The plugin effectively utilizes prepared statements for all SQL queries and demonstrates excellent output escaping practices, with 96% of outputs being properly escaped. The limited attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces potential entry points for attackers. The presence of a nonce check, although only one, indicates an awareness of security best practices. However, the complete absence of capability checks across the plugin is a notable concern, as it could allow unauthorized users to perform actions intended for administrators or shop managers.

Key Concerns

  • No capability checks found.
  • Bundled library Select2 may be outdated.
  • Only 1 nonce check found.
Vulnerabilities
1

Direct Checkout – Quick View – Buy Now For WooCommerce Security Vulnerabilities

CVEs by Year

1 CVE in 2023
2023
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2023-47657medium · 5.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Direct Checkout – Quick View – Buy Now For WooCommerce <= 1.5.8 - Authenticated (Shop manager+) Stored Cross-Site Scripting via Custom CSS Code

Nov 7, 2023 Patched in 1.5.9 (77d)
Code Analysis
Analyzed Mar 16, 2026

Direct Checkout – Quick View – Buy Now For WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
16
440 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

96% escaped456 total outputs
Attack Surface

Direct Checkout – Quick View – Buy Now For WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 46
actionadmin_enqueue_scriptscore\core.php:255
actionplugins_loadedgpls-arcw-quick-view-buy-now-for-woocommerce.php:301
filterwoocommerce_loop_add_to_cart_linkincludes\AddToCart.php:88
filterwoocommerce_loop_add_to_cart_argsincludes\AddToCart.php:89
actionwp_enqueue_scriptsincludes\AddToCart.php:90
actionwoocommerce_after_add_to_cart_buttonincludes\AddToCart.php:96
actionwoocommerce_add_to_cart_redirectincludes\AddToCart.php:98
filterwoocommerce_product_add_to_cart_textincludes\AddToCart.php:101
filterwoocommerce_product_single_add_to_cart_textincludes\AddToCart.php:102
filterwoocommerce_add_to_cart_handlerincludes\AddToCart.php:108
actionwoocommerce_grouped_product_list_after_priceincludes\AddToCart.php:121
filterwoocommerce_grouped_product_list_column_quantityincludes\AddToCart.php:122
filterwc_add_to_cart_message_htmlincludes\AddToCart.php:128
filterwoocommerce_get_script_dataincludes\AddToCart.php:129
actionwp_footerincludes\AddToCart.php:272
actionwoocommerce_add_to_cartincludes\AddToCart.php:1072
actionwoocommerce_add_to_cartincludes\AddToCart.php:1145
actionwoocommerce_after_add_to_cart_quantityincludes\Buynow.php:73
actionwoocommerce_before_add_to_cart_buttonincludes\Buynow.php:74
actionwoocommerce_after_add_to_cart_buttonincludes\Buynow.php:75
actionwoocommerce_after_add_to_cart_buttonincludes\Buynow.php:76
actionwoocommerce_grouped_product_list_afterincludes\Buynow.php:79
actioninitincludes\Buynow.php:82
actionwoocommerce_before_checkout_formincludes\Checkout.php:124
actionwp_enqueue_scriptsincludes\Checkout.php:125
actionwoocommerce_before_checkout_formincludes\Checkout.php:126
actioninitincludes\CustomCSS.php:102
filterwoocommerce_locate_templateincludes\Popup.php:56
filterwoocommerce_single_product_image_gallery_classesincludes\Popup.php:57
actioninitincludes\Popup.php:65
filterwoocommerce_locate_templateincludes\Popup.php:67
filterwoocommerce_disable_compatibility_layerincludes\Popup.php:69
actionwoocommerce_after_single_product_summaryincludes\Popup.php:392
actionwoocommerce_after_single_product_summaryincludes\Popup.php:395
actionwoocommerce_after_single_product_summaryincludes\Popup.php:398
actionwoocommerce_before_quantity_input_fieldincludes\QuantityInput.php:84
actionwoocommerce_after_quantity_input_fieldincludes\QuantityInput.php:85
filterwoocommerce_quantity_input_classesincludes\QuantityInput.php:86
actionwp_footerincludes\ScreenLoader.php:145
actioninitincludes\Settings.php:333
filterwoocommerce_settings_tabs_arrayincludes\Settings.php:334
actionadmin_enqueue_scriptsincludes\Settings.php:338
filteryith_wcpb_get_frontend_assetsincludes\Settings.php:350
actionadmin_footerincludes\Settings.php:354
actionwoocommerce_product_data_panelsincludes\Single.php:80
filterwoocommerce_product_data_tabsincludes\Single.php:81
Maintenance & Trust

Direct Checkout – Quick View – Buy Now For WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 27, 2025
PHP min version7.0
Downloads28K

Community Trust

Rating100/100
Number of ratings3
Active installs2K
Developer Profile

Direct Checkout – Quick View – Buy Now For WooCommerce Developer Profile

GrandPlugins

20 plugins · 9K total installs

74
trust score
Avg Security Score
93/100
Avg Patch Time
160 days
View full developer profile
Detection Fingerprints

How We Detect Direct Checkout – Quick View – Buy Now For WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/css/common.css/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/common.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/quick-view.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/buynow.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/popup.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/quantity-input.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/screen-loader.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/css/settings.css+1 more
Script Paths
/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/common.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/quick-view.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/buynow.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/popup.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/quantity-input.js/wp-content/plugins/quick-view-and-buy-now-for-woocommerce/assets/js/screen-loader.js
Version Parameters
quick-view-and-buy-now-for-woocommerce/assets/css/common.css?ver=quick-view-and-buy-now-for-woocommerce/assets/js/common.js?ver=quick-view-and-buy-now-for-woocommerce/assets/js/quick-view.js?ver=quick-view-and-buy-now-for-woocommerce/assets/js/buynow.js?ver=quick-view-and-buy-now-for-woocommerce/assets/js/popup.js?ver=quick-view-and-buy-now-for-woocommerce/assets/js/quantity-input.js?ver=quick-view-and-buy-now-for-woocommerce/assets/js/screen-loader.js?ver=quick-view-and-buy-now-for-woocommerce/assets/css/settings.css?ver=quick-view-and-buy-now-for-woocommerce/assets/css/admin-menu.css?ver=

HTML / DOM Fingerprints

CSS Classes
gpls-arcw-quick-view-wrapgpls-arcw-quick-view-buttongpls-arcw-buy-now-buttongpls-arcw-add-to-cart-buttongpls-arcw-popup-contentgpls-arcw-screen-loader
Data Attributes
data-gpls-arcw-product-iddata-gpls-arcw-actiondata-gpls-arcw-popup-id
JS Globals
gpls_arcw_localize_data
REST Endpoints
/wp-json/gpls-arcw/v1/quick-view/wp-json/gpls-arcw/v1/buy-now
FAQ

Frequently Asked Questions about Direct Checkout – Quick View – Buy Now For WooCommerce