
RockOn Woo Variations Table Security & Risk Analysis
wordpress.org/plugins/rockon-woo-variations-tableSimple plugin. Show variations product in table format using shortcode.
Is RockOn Woo Variations Table Safe to Use in 2026?
Generally Safe
Score 85/100RockOn Woo Variations Table has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "rockon-woo-variations-table" v6.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by avoiding dangerous functions, file operations, and external HTTP requests. All SQL queries are secured with prepared statements, and there are no known vulnerabilities (CVEs) associated with this plugin. However, significant concerns arise from its attack surface. Two AJAX handlers are exposed without any authentication checks, presenting a direct pathway for unauthorized actions. Furthermore, the taint analysis indicates two unsanitized paths, suggesting potential for injection vulnerabilities if user-supplied data is not properly handled, though no critical or high severity issues were flagged. The lack of nonce checks on AJAX handlers is a critical oversight, as it allows for Cross-Site Request Forgery (CSRF) attacks.
The plugin's vulnerability history is clean, which is a positive indicator. This suggests that the developers may be responsive to security issues or that the plugin has not been a target for exploitation. However, the presence of unprotected entry points and potential unsanitized data flows are inherent risks that could be exploited by attackers, even without a known vulnerability history. The limited output escaping on some outputs also contributes to a potential for cross-site scripting (XSS) vulnerabilities.
Key Concerns
- AJAX handlers without auth checks
- Flows with unsanitized paths (Taint Analysis)
- Unescaped output (60% escaped)
- No nonce checks on AJAX handlers
RockOn Woo Variations Table Security Vulnerabilities
RockOn Woo Variations Table Code Analysis
Output Escaping
Data Flow Analysis
RockOn Woo Variations Table Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
RockOn Woo Variations Table Maintenance & Trust
Maintenance Signals
Community Trust
RockOn Woo Variations Table Alternatives
PVT – Product Variation Table for WooCommerce
product-variant-table-for-woocommerce
Display WooCommerce product variations in a nicely formatted table with options to sort and filter by attribute.
Ni WooCommerce Product Variations Table
ni-woocommerce-product-variations-table
Display woocommerce product variation as table instead of dropdown.
Grouped Variations Table
grouped-variations-table
Allowing you to group variations in sleak tables on the product page
ShortcodeGlut – Product Shortcodes for WooCommerce
shortcodeglut
Beautiful WooCommerce product shortcodes with grid, list, and table layouts for displaying products, sale items, and category listings.
Weight Based Shipping Table Rate for WooCommerce – Flexible Shipping
flexible-shipping
Weight based shipping methods for WooCommerce. Flexible shipping with table rate rules by cart weight and order value. Accurate rates at checkout.
RockOn Woo Variations Table Developer Profile
6 plugins · 3K total installs
How We Detect RockOn Woo Variations Table
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rockon-woo-variations-table/assets/css/rwvt_style.cssrockon-woo-variations-table/assets/css/rwvt_style.css?ver=HTML / DOM Fingerprints
ron-woo-table-sectionro-loader-row-hoverrow-2evenoddvalueid="ron-att-name-id="ron-attr-data-attribute_name="attribute_id="add-cart-ron_woo_variations_tableron_woo_find_matching_product_variationcheck_choosed_varron_woo_variable_add_to_cartrwvt_enqueue_stylesrwvt_head_scripts+1 more/wp-json/wp/v2/check_choosed_var[rovartable