
Sello ChannelConnector Security & Risk Analysis
wordpress.org/plugins/sello-channelconnectorEasily send your products to multiple Nordic and European marketplaces like CDON, Fyndiq, Tradera, Wupti and Coolshop.
Is Sello ChannelConnector Safe to Use in 2026?
Use With Caution
Score 63/100Sello ChannelConnector has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "sello-channelconnector" v1.6.3 plugin presents a concerning security posture due to significant weaknesses in its code and a history of vulnerabilities. The static analysis reveals a considerable attack surface with multiple unprotected entry points, specifically AJAX handlers and REST API routes, which are prime targets for attackers. The lack of proper authorization checks on these endpoints is a critical flaw. Furthermore, the taint analysis indicates high severity flows with unsanitized paths, suggesting potential for malicious input to be processed without adequate validation, leading to vulnerabilities. The plugin also demonstrates poor output escaping practices, with only 15% of outputs being properly escaped, increasing the risk of Cross-Site Scripting (XSS) attacks. The vulnerability history, including an unpatched medium severity CVE, further exacerbates these concerns, indicating a pattern of security issues. While the absence of dangerous functions and file operations is a minor positive, the overwhelming presence of critical security flaws makes this plugin a significant risk. Users should exercise extreme caution and consider disabling or seeking an updated, more secure version.
Key Concerns
- Unprotected AJAX handler
- REST API routes without permission callbacks
- High severity taint flows
- Low output escaping
- No nonce checks
- No capability checks
- Unpatched medium CVE
- Unsanitized paths in taint flows
Sello ChannelConnector Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Sello ChannelConnector <= 1.6.3 - Reflected Cross-Site Scripting
Sello ChannelConnector Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Sello ChannelConnector Attack Surface
AJAX Handlers 1
REST API Routes 3
WordPress Hooks 15
Maintenance & Trust
Sello ChannelConnector Maintenance & Trust
Maintenance Signals
Community Trust
Sello ChannelConnector Alternatives
Product Filter for WooCommerce by WBW
woo-product-filter
Filter products by categories, attributes, prices, and more. Elementor Compatibility. Shoppers easily find products with WooCommerce Product Filter
Klarna for WooCommerce
klarna-payments-for-woocommerce
Grow your business for increased sales and enhanced shopping experiences at no extra costs.
WCBoost – Wishlist
wcboost-wishlist
WCBoost - Wishlist lets shoppers create wishlists for later purchases, reminding them of desired items, driving repeat visits and boost sales.
Conversion Tracking for WooCommerce
woocommerce-conversion-tracking
Adds various conversion tracking codes to cart, checkout, registration success and product page on WooCommerce
Amazon Pay for WooCommerce
woocommerce-gateway-amazon-payments-advanced
Install the Amazon Pay plugin for your WooCommerce store and take advantage of a seamless checkout experience
Sello ChannelConnector Developer Profile
1 plugin · 80 total installs
How We Detect Sello ChannelConnector
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wc-channelconnector/v1/updatedproducts