
Raffle for WooCommerce Security & Risk Analysis
wordpress.org/plugins/raffle-for-woocommerceRun raffles with WooCommerce. Sell tickets, draw winners, and let customers buy tickets for friends and family.
Is Raffle for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Raffle for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "raffle-for-woocommerce" v1.1.4 plugin exhibits a generally good security posture based on the provided static analysis. A significant number of entry points (32) are present, but importantly, all are protected by either nonce or capability checks, indicating a strong emphasis on authentication and authorization. The plugin also demonstrates good practices with a high percentage of SQL queries using prepared statements and output escaping, minimizing the risk of common vulnerabilities like SQL injection and cross-site scripting. The absence of dangerous functions and external HTTP requests further bolsters its security.
However, the taint analysis reveals a concerning number of flows with unsanitized paths (10 out of 13 analyzed). While no critical or high severity taint flows were explicitly found, the sheer volume of unsanitized paths suggests a potential for vulnerabilities if user input is not handled rigorously in these flows. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive sign of its current security. Nevertheless, the taint analysis findings warrant attention as they highlight areas where improper input sanitization could lead to security issues, even in the absence of historically documented vulnerabilities.
Key Concerns
- Flows with unsanitized paths found in taint analysis
- High percentage of unsanitized paths in taint flows
Raffle for WooCommerce Security Vulnerabilities
Raffle for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Raffle for WooCommerce Attack Surface
AJAX Handlers 25
Shortcodes 7
WordPress Hooks 116
Scheduled Events 4
Maintenance & Trust
Raffle for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Raffle for WooCommerce Alternatives
Raffle Play Woocommerce
raffle-play-woo
Raffle Play Woo is generating raffle tickets for woocommerce products, based on the number defined by the admin. Adds raffle tickets to your woocommer …
Giveaway Lottery for WooCommerce
giveaway-lottery
Sell tickets, run giveaways, raffles, lotteries, and lucky draws in WooCommerce to boost engagement, sales, and customer loyalty.
Event Tickets with Ticket Scanner
event-tickets-with-ticket-scanner
Sell event tickets with WooCommerce. Design seating plans, generate PDF tickets with QR codes, and scan them at the door. No per-ticket fees.
ELEX WordPress HelpDesk & Customer Ticketing System
elex-helpdesk-customer-support-ticket-system
ELEX WordPress HelpDesk & Customer Ticketing System offers top-notch features for the best customer support experience.
Raffle Ticket Generator – Woocommerce
raffle-ticket-generator
This plugin is used with WooCommerce to generate raffle ticket numbers that are emailed to customers.
Raffle for WooCommerce Developer Profile
2 plugins · 10 total installs
How We Detect Raffle for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/raffle-for-woocommerce/assets/css/frontend.css/wp-content/plugins/raffle-for-woocommerce/assets/js/frontend.js/wp-content/plugins/raffle-for-woocommerce/assets/css/admin-tickets.css/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-tickets.js/wp-content/plugins/raffle-for-woocommerce/assets/css/admin-winner.css/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-winner.js/wp-content/plugins/raffle-for-woocommerce/assets/css/admin-settings.css/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-settings.js+5 more/wp-content/plugins/raffle-for-woocommerce/assets/js/frontend.js/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-tickets.js/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-winner.js/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-settings.js/wp-content/plugins/raffle-for-woocommerce/assets/js/admin-analytics.js/wp-content/plugins/raffle-for-woocommerce/assets/js/admin.js+1 moreraffle-for-woocommerce/assets/css/frontend.css?ver=raffle-for-woocommerce/assets/js/frontend.js?ver=raffle-for-woocommerce/assets/css/admin-tickets.css?ver=raffle-for-woocommerce/assets/js/admin-tickets.js?ver=raffle-for-woocommerce/assets/css/admin-winner.css?ver=raffle-for-woocommerce/assets/js/admin-winner.js?ver=raffle-for-woocommerce/assets/css/admin-settings.css?ver=raffle-for-woocommerce/assets/js/admin-settings.js?ver=raffle-for-woocommerce/assets/css/admin-analytics.css?ver=raffle-for-woocommerce/assets/js/admin-analytics.js?ver=raffle-for-woocommerce/assets/css/admin.css?ver=raffle-for-woocommerce/assets/js/admin.js?ver=raffle-for-woocommerce/assets/js/rfwc-blocks.js?ver=HTML / DOM Fingerprints
rfwc-raffle-productrfwc-raffle-tickets-boughtrfwc-raffle-ticket-pricerfwc-raffle-ticket-quantityrfwc-raffle-winner-listrfwc-raffle-winner-itemrfwc-raffle-countdown-timerrfwc-ticket-details+5 more<!-- Raffle for WooCommerce --><!-- End Raffle for WooCommerce --><!-- Start RFWC Admin Tickets --><!-- End RFWC Admin Tickets -->+6 moredata-rfwc-product-iddata-rfwc-raffle-iddata-rfwc-ticket-iddata-rfwc-winner-iddata-rfwc-validation-urlRFWC_FrontendRFWC_AdminTicketsRFWC_AdminWinnerRFWC_AdminSettingsRFWC_AdminAnalytics/wp-json/rfwc/v1/validate-ticket/wp-json/rfwc/v1/get-raffle-info[rfwc_raffle_tickets_bought][rfwc_raffle_winner_list][rfwc_raffle_countdown]