rooom 3D Product Viewer Security & Risk Analysis

wordpress.org/plugins/rooom-3d-product-viewer

The rooom extension is a powerful tool that allows you to integrate the rooom 3D Product Viewer quickly & easily into your product pages.

10 active installs v1.1.3 PHP 7.4+ WP 5.8+ Updated Apr 17, 2025
360-deg-viewer360-product-viewer3d3d-model-displayecommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is rooom 3D Product Viewer Safe to Use in 2026?

Generally Safe

Score 100/100

rooom 3D Product Viewer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The rooom-3d-product-viewer plugin, version 1.1.3, exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs, critical taint flows, or raw SQL queries demonstrates good development practices. The plugin also shows a high percentage of properly escaped outputs and incorporates nonce and capability checks, which are crucial for secure WordPress development. The limited attack surface, consisting of a single shortcode without direct authentication checks, further contributes to its positive security profile.

However, there are minor areas for consideration. The presence of one external HTTP request without further context on its destination or handling introduces a potential, albeit small, risk if the external resource is compromised or malicious. While the static analysis found no dangerous functions or file operations, the lack of taint analysis data (0 flows analyzed) means that the potential for more complex vulnerabilities, particularly those involving chained exploits or overlooked data sanitization paths, cannot be definitively ruled out. Overall, the plugin appears to be developed with security in mind, but vigilance regarding external dependencies and the possibility of complex, untainted vulnerabilities is warranted.

Key Concerns

  • External HTTP request without context
Vulnerabilities
None known

rooom 3D Product Viewer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

rooom 3D Product Viewer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
75 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

90% escaped83 total outputs
Attack Surface

rooom 3D Product Viewer Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[rooom-3D-product-viewer] includes\rooom-woocommerce-frontend.php:324
WordPress Hooks 14
actionadmin_initincludes\class-rooom-product-viewer.php:104
actionadmin_initincludes\class-rooom-product-viewer.php:105
actionadmin_enqueue_scriptsincludes\class-rooom-product-viewer.php:110
actionwp_enqueue_scriptsincludes\class-rooom-product-viewer.php:146
actionadmin_menuincludes\class-rooom-product-viewer.php:299
filterwoocommerce_before_shop_loop_itemincludes\rooom-woocommerce-frontend.php:213
actionwoocommerce_product_thumbnailsincludes\rooom-woocommerce-frontend.php:262
filterwp_get_attachment_imageincludes\rooom-woocommerce-frontend.php:264
filterwoocommerce_product_data_tabsincludes\rooom-woocommerce-settings.php:29
filterwoocommerce_product_data_panelsincludes\rooom-woocommerce-settings.php:114
actionwoocommerce_process_product_meta_simpleincludes\rooom-woocommerce-settings.php:164
actionwoocommerce_process_product_meta_variableincludes\rooom-woocommerce-settings.php:165
actionplugins_loadedrooom-woocommerce-plugin.php:28
actioninitrooom-woocommerce-plugin.php:36
Maintenance & Trust

rooom 3D Product Viewer Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 17, 2025
PHP min version7.4
Downloads7K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

rooom 3D Product Viewer Developer Profile

rooom

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect rooom 3D Product Viewer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/rooom-3d-product-viewer/src/index.js/wp-content/plugins/rooom-3d-product-viewer/src/rooom.css
Script Paths
/wp-content/plugins/rooom-3d-product-viewer/src/index.js
Version Parameters
rooom-3d-product-viewer/src/index.js?ver=rooom-3d-product-viewer/src/rooom.css?ver=

HTML / DOM Fingerprints

JS Globals
rooom_add_color_pickerrooom_add_custom_frontend_script
FAQ

Frequently Asked Questions about rooom 3D Product Viewer