OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Security & Risk Analysis

wordpress.org/plugins/sdc-orderfusion-lite

Search and filter WooCommerce orders by product, SKU, status, payment method & more. Add columns for products, phone, email, notes. Export to CSV.

10 active installs v1.1.0 PHP 7.4+ WP 5.4+ Updated Apr 3, 2026
order-columnsorder-exportorder-filterorder-searchwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The 'sdc-orderfusion-lite' plugin v1.0.0 exhibits a generally good security posture, with strong adherence to secure coding practices. The extensive use of prepared statements for SQL queries (92%) and proper output escaping (91%) are significant strengths that mitigate common web vulnerabilities. The plugin also demonstrates a proactive approach to security by implementing numerous nonce (21) and capability (18) checks, which are crucial for preventing unauthorized actions.

However, a notable concern is the presence of one AJAX handler without any authentication checks. While the taint analysis did not reveal any critical or high severity issues, this single unprotected entry point represents a potential avenue for attackers to trigger unintended functionality within the plugin. The absence of any recorded vulnerabilities in its history is a positive indicator of its current security maturity and the development team's diligence.

In conclusion, 'sdc-orderfusion-lite' v1.0.0 is a relatively secure plugin due to its robust use of prepared statements and output escaping, and a clean vulnerability history. The primary area for improvement and vigilance lies in addressing the single unprotected AJAX handler to further harden its attack surface.

Key Concerns

  • AJAX handler without authentication check
Vulnerabilities
None known

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Release Timeline

v1.1.0Current
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
11
135 prepared
Unescaped Output
47
462 escaped
Nonce Checks
21
Capability Checks
18
File Operations
5
External Requests
0
Bundled Libraries
0

SQL Query Safety

92% prepared146 total queries

Output Escaping

91% escaped509 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
handle_secure_export (includes\class-admin.php:1846)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Attack Surface

Entry Points17
Unprotected1

AJAX Handlers 17

authwp_ajax_sdcof_filter_ordersincludes\class-admin.php:140
authwp_ajax_sdcof_save_filter_optionsincludes\class-admin.php:143
authwp_ajax_sdcof_render_filtersincludes\class-admin.php:146
authwp_ajax_sdcof_selected_filtersincludes\class-admin.php:149
authwp_ajax_sdcof_export_csvincludes\class-admin.php:164
authwp_ajax_sdcof_get_settings_dataincludes\class-admin.php:167
authwp_ajax_sdcof_secure_exportincludes\class-admin.php:170
authwp_ajax_hidden-columnsincludes\class-column-manager.php:67
authwp_ajax_sdcof_save_column_orderincludes\class-column-manager.php:70
authwp_ajax_sdcof_save_filter_orderincludes\class-filter-manager.php:70
authwp_ajax_sdcof_refresh_filter_optionsincludes\class-filter-manager.php:71
authwp_ajax_sdcof_save_product_detailsincludes\class-settings.php:58
authwp_ajax_sdcof_save_product_previewincludes\class-settings.php:61
authwp_ajax_sdcof_save_active_filtersincludes\class-settings.php:64
authwp_ajax_sdcof_save_hide_filter_buttonincludes\class-settings.php:67
authwp_ajax_sdcof_save_infinite_scrollincludes\class-settings.php:70
authwp_ajax_sdcof_save_order_notesincludes\class-settings.php:73
WordPress Hooks 36
actioninitincludes\class-admin.php:99
actionadmin_enqueue_scriptsincludes\class-admin.php:123
filteradmin_body_classincludes\class-admin.php:126
actionmanage_posts_extra_tablenavincludes\class-admin.php:128
actionwoocommerce_order_list_table_extra_tablenavincludes\class-admin.php:129
actionpre_get_postsincludes\class-admin.php:132
filterposts_clausesincludes\class-admin.php:133
filterwoocommerce_order_list_table_prepare_items_query_argsincludes\class-admin.php:136
filterwoocommerce_orders_table_query_clausesincludes\class-admin.php:137
actioncurrent_screenincludes\class-admin.php:152
filterset-screen-optionincludes\class-admin.php:155
filterbulk_actions-edit-shop_orderincludes\class-admin.php:160
filterbulk_actions-woocommerce_page_wc-ordersincludes\class-admin.php:161
actionadmin_initincludes\class-admin.php:173
actionadmin_noticesincludes\class-admin.php:174
filtermanage_edit-shop_order_columnsincludes\class-column-manager.php:55
filterwoocommerce_shop_order_list_table_columnsincludes\class-column-manager.php:56
actionmanage_shop_order_posts_custom_columnincludes\class-column-manager.php:59
actionwoocommerce_shop_order_list_table_custom_columnincludes\class-column-manager.php:60
filtermanage_edit-shop_order_sortable_columnsincludes\class-column-manager.php:63
filterwoocommerce_shop_order_list_table_sortable_columnsincludes\class-column-manager.php:64
filterhidden_columnsincludes\class-column-manager.php:390
filtercomments_clausesincludes\class-columns.php:730
actionmanage_posts_extra_tablenavincludes\class-filter-manager.php:65
actionwoocommerce_order_list_table_restrict_manage_ordersincludes\class-filter-manager.php:66
actionadmin_initincludes\class-filter-manager.php:69
filterwoocommerce_shop_order_list_table_order_countincludes\class-filter-manager.php:75
filterscreen_settingsincludes\class-filter-manager.php:883
actionwoocommerce_order_status_changedincludes\class-plugin.php:55
actionwoocommerce_new_orderincludes\class-plugin.php:56
actionwoocommerce_order_status_changedincludes\class-plugin.php:85
actionadmin_footerincludes\class-settings.php:55
actionadmin_noticessdc-orderfusion-lite.php:67
actionbefore_woocommerce_initsdc-orderfusion-lite.php:91
actionwp_insert_sitesdc-orderfusion-lite.php:138
actionplugins_loadedsdc-orderfusion-lite.php:141
Maintenance & Trust

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 3, 2026
PHP min version7.4
Downloads193

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

OrderFusion Lite – Order Filters, Columns & Export for WooCommerce Developer Profile

SpellDot

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect OrderFusion Lite – Order Filters, Columns & Export for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sdc-orderfusion-lite/assets/css/sdcof-admin.css/wp-content/plugins/sdc-orderfusion-lite/assets/js/sdcof-admin.js
Script Paths
/wp-content/plugins/sdc-orderfusion-lite/assets/js/sdcof-admin.js
Version Parameters
sdc-orderfusion-lite/assets/css/sdcof-admin.css?ver=sdc-orderfusion-lite/assets/js/sdcof-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
sdcof-filter-dropdownsdcof-filter-iconsdcof-filter-input-groupsdcof-filter-input-selectsdcof-filter-wrappersdcof-order-column-actions
HTML Comments
<!-- Admin-facing logic for SDCOF OrderFusion --><!-- Admin class for handling admin-side functionality. --><!-- Centralized AJAX security verification --><!-- Filter manager instance. -->+12 more
Data Attributes
data-nonce-action="sdcof_nonce"data-nonce-field="security"
JS Globals
window.sdcof_admin_params
FAQ

Frequently Asked Questions about OrderFusion Lite – Order Filters, Columns & Export for WooCommerce