Recently Viewed Product for WooCommerce Security & Risk Analysis

wordpress.org/plugins/recently-viewed-products-for-woocommerce

Recently Viewed Products for WooCommerce Listing page, you can easily add recently viewed product section by activate the plugin.

1K active installs v2.0.0 PHP 7.4+ WP 5.0+ Updated Dec 12, 2024
e-commerceonline-storerecently-viewed-productshopping-cartwoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Recently Viewed Product for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

Recently Viewed Product for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "recently-viewed-products-for-woocommerce" version 2.0.0 exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping a very high percentage (97%) of its outputs. Importantly, the static analysis found no dangerous functions, file operations, external HTTP requests, or any taint flows, which significantly reduces the risk of common web vulnerabilities like SQL injection, file inclusion, or remote code execution. The lack of any recorded CVEs further reinforces this positive assessment, indicating a history of secure development.

However, there are some areas that warrant attention. The plugin has zero nonce checks and zero capability checks across its entry points. While the current analysis shows no unprotected entry points (AJAX handlers, REST API routes), the absence of these fundamental security controls means that if any new entry points are introduced or if existing ones are modified without proper authorization checks, the plugin could become vulnerable to CSRF or privilege escalation attacks. The presence of a shortcode, while having no inherent vulnerability, represents a potential avenue for user input that, without proper validation and sanitization within its handler, could lead to issues, especially given the lack of output escaping on some of its outputs and the absence of capability checks.

Key Concerns

  • Missing Nonce Checks
  • Missing Capability Checks
  • Minor Output Escaping Issues
Vulnerabilities
None known

Recently Viewed Product for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Recently Viewed Product for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
35 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

97% escaped36 total outputs
Attack Surface

Recently Viewed Product for WooCommerce Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[rvpw_products] public\class-recently-viewed-products-for-woocommerce-public.php:54
WordPress Hooks 10
actionplugins_loadedincludes\class-recently-viewed-products-for-woocommerce.php:139
actionadmin_enqueue_scriptsincludes\class-recently-viewed-products-for-woocommerce.php:153
actionadmin_enqueue_scriptsincludes\class-recently-viewed-products-for-woocommerce.php:154
actionadmin_menuincludes\class-recently-viewed-products-for-woocommerce.php:155
actionadmin_initincludes\class-recently-viewed-products-for-woocommerce.php:156
filterplugin_action_linksincludes\class-recently-viewed-products-for-woocommerce.php:157
actionwp_enqueue_scriptsincludes\class-recently-viewed-products-for-woocommerce.php:173
actionwp_enqueue_scriptsincludes\class-recently-viewed-products-for-woocommerce.php:174
actiontemplate_redirectincludes\class-recently-viewed-products-for-woocommerce.php:175
actionwoocommerce_after_single_product_summaryincludes\class-recently-viewed-products-for-woocommerce.php:176
Maintenance & Trust

Recently Viewed Product for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 12, 2024
PHP min version7.4
Downloads5K

Community Trust

Rating94/100
Number of ratings3
Active installs1K
Developer Profile

Recently Viewed Product for WooCommerce Developer Profile

Mahesh Patel

2 plugins · 1K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Recently Viewed Product for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/recently-viewed-products-for-woocommerce/admin/css/recently-viewed-products-for-woocommerce-admin.css/wp-content/plugins/recently-viewed-products-for-woocommerce/admin/js/recently-viewed-products-for-woocommerce-admin.js
Script Paths
/wp-content/plugins/recently-viewed-products-for-woocommerce/admin/js/recently-viewed-products-for-woocommerce-admin.js
Version Parameters
recently-viewed-products-for-woocommerce/admin/css/recently-viewed-products-for-woocommerce-admin.css?ver=recently-viewed-products-for-woocommerce/admin/js/recently-viewed-products-for-woocommerce-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
rvpw_products
Data Attributes
rvpw_products
Shortcode Output
[rvpw_products
FAQ

Frequently Asked Questions about Recently Viewed Product for WooCommerce