
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Security & Risk Analysis
wordpress.org/plugins/recently-viewed-products-for-woocommerceWooCommerce recently viewed products in a grid, list or carousel via shortcode, widget, block, Elementor, plus most viewed and follow-up emails.
Is Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Safe to Use in 2026?
Generally Safe
Score 100/100Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "recently-viewed-products-for-woocommerce" version 2.0.0 exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping a very high percentage (97%) of its outputs. Importantly, the static analysis found no dangerous functions, file operations, external HTTP requests, or any taint flows, which significantly reduces the risk of common web vulnerabilities like SQL injection, file inclusion, or remote code execution. The lack of any recorded CVEs further reinforces this positive assessment, indicating a history of secure development.
However, there are some areas that warrant attention. The plugin has zero nonce checks and zero capability checks across its entry points. While the current analysis shows no unprotected entry points (AJAX handlers, REST API routes), the absence of these fundamental security controls means that if any new entry points are introduced or if existing ones are modified without proper authorization checks, the plugin could become vulnerable to CSRF or privilege escalation attacks. The presence of a shortcode, while having no inherent vulnerability, represents a potential avenue for user input that, without proper validation and sanitization within its handler, could lead to issues, especially given the lack of output escaping on some of its outputs and the absence of capability checks.
Key Concerns
- Missing Nonce Checks
- Missing Capability Checks
- Minor Output Escaping Issues
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Security Vulnerabilities
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Release Timeline
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Code Analysis
Output Escaping
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Attack Surface
Shortcodes 1
WordPress Hooks 10
Maintenance & Trust
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Maintenance & Trust
Maintenance Signals
Community Trust
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Alternatives
FCW Recently Viewed Products Slider for WooCommerce
fcw-recently-viewed-products-slider
Display recently viewed WooCommerce products in a smooth horizontal slider using a shortcode or automatic placement.
Customer who viewed this item also viewed using Woocommerce
woocommerce-customer-who-viewed-this-item-also-viewed
To suggest your site visitors with products which were mostly explored by other customers. This requires the WooCommerce plugin activated
Arewa Recently Viewed Content
arewa-recently-viewed-content
Track and display recently viewed content for both logged-in and guest users with automatic history sync and multiple layout options.
Carousel Slider
carousel-slider
Create SEO friendly Image, Logo, Video, Post, WooCommerce Product Carousel, and Slider.
Product Slider, Product Carousel and Product Grid Gallery for WooCommerce – WooProduct Slider
woo-product-slider
Display your WooCommerce products in a responsive Product Slider, Product Carousel, or Product Grid Gallery with easy customization.
Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email Developer Profile
2 plugins · 1K total installs
How We Detect Recently Viewed Products for WooCommerce – Carousel, Widget, Block & Email
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/recently-viewed-products-for-woocommerce/admin/css/recently-viewed-products-for-woocommerce-admin.css/wp-content/plugins/recently-viewed-products-for-woocommerce/admin/js/recently-viewed-products-for-woocommerce-admin.js/wp-content/plugins/recently-viewed-products-for-woocommerce/admin/js/recently-viewed-products-for-woocommerce-admin.jsrecently-viewed-products-for-woocommerce/admin/css/recently-viewed-products-for-woocommerce-admin.css?ver=recently-viewed-products-for-woocommerce/admin/js/recently-viewed-products-for-woocommerce-admin.js?ver=HTML / DOM Fingerprints
rvpw_productsrvpw_products[rvpw_products