
Rearrange Products for WooCommerce Security & Risk Analysis
wordpress.org/plugins/rearrange-woocommerce-productsBoost WooCommerce sales with the Rearrange Products for WooCommerce plugin. Easily reorder products with a simple drag-and-drop tool!
Is Rearrange Products for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Rearrange Products for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The "rearrange-woocommerce-products" plugin version 5.0.11 demonstrates a generally good security posture with several strengths. The static analysis indicates a well-protected attack surface, with all four identified AJAX entry points protected by nonce and capability checks. Furthermore, the plugin exhibits excellent practices regarding output escaping, with a very high percentage of outputs properly sanitized, and no file operations or external HTTP requests, reducing potential attack vectors. Taint analysis also shows no critical or high severity flows with unsanitized paths.
However, there are areas that warrant caution. While the percentage of SQL queries using prepared statements is relatively high at 65%, there are still a significant number of raw SQL queries present. This, combined with the plugin's history of an "SQL Injection" vulnerability, suggests a potential residual risk if the remaining raw queries are not thoroughly vetted or if future modifications introduce similar flaws. The presence of a past medium-severity SQL injection vulnerability, even though currently patched, indicates that the developers have had to address such issues previously, highlighting the need for continued vigilance.
In conclusion, the plugin has strong defensive mechanisms in place, particularly concerning input validation for AJAX requests and output sanitization. The plugin is performing well in code analysis and past vulnerabilities have been addressed. The primary concern lies in the remaining percentage of raw SQL queries, which, given the plugin's history, could represent a latent risk. Overall, the security posture is good, but not without a minor area for improvement regarding SQL query preparation.
Key Concerns
- Raw SQL queries present
- Past medium SQL Injection vulnerability
Rearrange Products for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Rearrange Woocommerce Products <= 3.0.7 - Subscriber+ SQL Injection
Rearrange Products for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Rearrange Products for WooCommerce Attack Surface
AJAX Handlers 4
WordPress Hooks 27
Maintenance & Trust
Rearrange Products for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Rearrange Products for WooCommerce Alternatives
Product Rearrange for WooCommerce
products-rearrange-woocommerce
Product Rearrange for WooCommerce allows to rearrange or reorder Woocommerce products using the drag & drop & its order will be saved in few seconds.
Themify – WooCommerce Product Filter
themify-wc-product-filter
This plugin helps shoppers quickly find products in your WooCommerce shop by filtering through price, categories, attributes, tags, and more.
Extra Product Sorting Options for WooCommerce
woocommerce-extra-product-sorting-options
Rename the default product sorting option, add up to 5 new sorting options including alphabetical and on-sale sorting, or remove core sorting options.
WCAPF – WooCommerce Ajax Product Filter
wc-ajax-product-filter
WCAPF - WooCommerce Ajax Product Filter is a powerful plugin that enhances the filtering functionality of your WooCommerce store.
Product Sort and Display for WooCommerce
woocommerce-product-sort-and-display
Create a true Supermarket shopping experience. Sort and show products on Shop page by category - auto show On Sale or Featured first, Endless Scroll.
Rearrange Products for WooCommerce Developer Profile
3 plugins · 21K total installs
How We Detect Rearrange Products for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rearrange-woocommerce-products/assets/css/rwpp-admin-style.css/wp-content/plugins/rearrange-woocommerce-products/assets/css/rwpp-backend.css/wp-content/plugins/rearrange-woocommerce-products/assets/js/rwpp-admin.js/wp-content/plugins/rearrange-woocommerce-products/assets/js/rwpp-backend.jsrearrange-woocommerce-products/assets/css/rwpp-admin-style.css?ver=rearrange-woocommerce-products/assets/css/rwpp-backend.css?ver=rearrange-woocommerce-products/assets/js/rwpp-admin.js?ver=rearrange-woocommerce-products/assets/js/rwpp-backend.js?ver=HTML / DOM Fingerprints
rwpp-page-wrapperrwpp-sorting-pagerwpp-sort-by-category-pagerwpp-category-sort-containerrwpp-product-listrwpp-product-item<!-- Rearrange Products for WooCommerce --><!-- Rearrange Products for WooCommerce Settings --><!-- Rearrange Products for WooCommerce Sort by Categories -->data-product_iddata-category_iddata-term_iddata-orderrwpp_ajax_object/wp-json/rwpp/v1/save_order/wp-json/rwpp/v1/save_category_order/wp-json/rwpp/v1/run_migration[rwpp_products][rwpp_categories]