ShortcodeGlut – Product Shortcodes for WooCommerce Security & Risk Analysis

wordpress.org/plugins/shortcodeglut

Beautiful WooCommerce product shortcodes with grid, list, and table layouts for displaying products, sale items, and category listings.

0 active installs v1.0.0 PHP 7.4+ WP 5.8+ Updated Mar 14, 2026
product-displayproduct-tableproductsshortcodewoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ShortcodeGlut – Product Shortcodes for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

ShortcodeGlut – Product Shortcodes for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 20d ago
Risk Assessment

The shortcodeglut plugin v1.0.0 demonstrates a generally good security posture, particularly concerning its handling of common WordPress entry points. The absence of any known vulnerabilities (CVEs) in its history is a strong indicator of a stable and secure development process. Furthermore, the plugin exhibits strong practices in critical areas such as SQL query preparation (66% prepared statements), output escaping (86% properly escaped), and the presence of both nonce and capability checks, indicating an awareness of security best practices.

However, the static analysis does reveal a few areas that warrant attention. The presence of a single flow with an unsanitized path in the taint analysis, while not classified as critical or high, suggests a potential for unexpected behavior or even a vulnerability if that path is exploitable. Additionally, while the majority of SQL queries use prepared statements, a significant portion (34%) do not, which could introduce SQL injection risks if those raw queries handle untrusted input.

In conclusion, shortcodeglut v1.0.0 is a plugin with a solid security foundation. The lack of historical vulnerabilities and good general practices are positive signs. The primary concerns stem from the taint analysis indicating an unsanitized path and the proportion of non-prepared SQL queries. Addressing these specific findings would further solidify the plugin's security.

Key Concerns

  • Flow with unsanitized path
  • Non-prepared SQL queries present
Vulnerabilities
None known

ShortcodeGlut – Product Shortcodes for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

ShortcodeGlut – Product Shortcodes for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
10
19 prepared
Unescaped Output
52
329 escaped
Nonce Checks
3
Capability Checks
6
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

66% prepared29 total queries

Output Escaping

86% escaped381 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

2 flows1 with unsanitized paths
render_toolbar (src\shortcodeShowcase\shortcodes\woo-category\WooCategoryShortcode.php:267)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

ShortcodeGlut – Product Shortcodes for WooCommerce Attack Surface

Entry Points9
Unprotected0

AJAX Handlers 5

authwp_ajax_shopglut_sale_products_loadsrc\shortcodeShowcase\shortcodes\sale-products\SaleProductsShortcode.php:29
noprivwp_ajax_shopglut_sale_products_loadsrc\shortcodeShowcase\shortcodes\sale-products\SaleProductsShortcode.php:30
authwp_ajax_shopglut_woo_category_productssrc\shortcodeShowcase\shortcodes\woo-category\WooCategoryShortcode.php:29
noprivwp_ajax_shopglut_woo_category_productssrc\shortcodeShowcase\shortcodes\woo-category\WooCategoryShortcode.php:30
authwp_ajax_shortcodeglut_preview_templatesrc\wooTemplates\SettingsPage.php:46

Shortcodes 4

[shopglut_product_table] src\shortcodeShowcase\shortcodes\product-table\ProductTableShortcode.php:24
[shopglut_sale_products] src\shortcodeShowcase\shortcodes\sale-products\SaleProductsShortcode.php:26
[shopglut_woo_category] src\shortcodeShowcase\shortcodes\woo-category\WooCategoryShortcode.php:26
[shopglut_template] src\wooTemplates\ShortcodeHandler.php:15
WordPress Hooks 24
actionplugins_loadedshortcodeglut.php:50
actionadmin_initshortcodeglut.php:60
actioninitsrc\ShortcodeglutBase.php:21
filterupdate_footersrc\ShortcodeglutBase.php:22
actionadmin_menusrc\ShortcodeglutRegisterMenu.php:15
actionload-toplevel_page_shortcodeglutsrc\ShortcodeglutRegisterMenu.php:16
filteradmin_body_classsrc\ShortcodeglutRegisterMenu.php:17
actionadmin_initsrc\ShortcodeglutRegisterScripts.php:17
actionwp_enqueue_scriptssrc\ShortcodeglutRegisterScripts.php:18
actionadmin_enqueue_scriptssrc\ShortcodeglutRegisterScripts.php:19
actionadmin_enqueue_scriptssrc\ShortcodeglutRegisterScripts.php:20
filteradmin_body_classsrc\ShortcodeglutTools.php:15
actionadmin_enqueue_scriptssrc\ShortcodeglutTools.php:16
actionadmin_enqueue_scriptssrc\shortcodeShowcase\AdminPage.php:24
actioninitsrc\shortcodeShowcase\init.php:48
actionwp_enqueue_scriptssrc\shortcodeShowcase\shortcodes\sale-products\SaleProductsShortcode.php:33
actionwp_enqueue_scriptssrc\shortcodeShowcase\shortcodes\woo-category\WooCategoryShortcode.php:33
actionadmin_enqueue_scriptssrc\WelcomePage.php:20
actionwp_enqueue_scriptssrc\wooTemplates\assets.php:14
actionadmin_enqueue_scriptssrc\wooTemplates\assets.php:15
actionadmin_enqueue_scriptssrc\wooTemplates\SettingsPage.php:49
actionadmin_initsrc\wooTemplates\SettingsPage.php:50
actionadmin_noticessrc\wooTemplates\SettingsPage.php:185
actionwp_enqueue_scriptssrc\wooTemplates\ShortcodeHandler.php:18
Maintenance & Trust

ShortcodeGlut – Product Shortcodes for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 14, 2026
PHP min version7.4
Downloads23

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

ShortcodeGlut – Product Shortcodes for WooCommerce Developer Profile

AppGlut

8 plugins · 110 total installs

99
trust score
Avg Security Score
98/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect ShortcodeGlut – Product Shortcodes for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/shortcodeglut/src/welcome-page.css
Version Parameters
shortcodeglut-welcome-page?ver=

HTML / DOM Fingerprints

CSS Classes
shortcodeglut-admin
FAQ

Frequently Asked Questions about ShortcodeGlut – Product Shortcodes for WooCommerce