Simple PDF Coupon for WooCommerce Security & Risk Analysis

wordpress.org/plugins/simple-pdf-coupon-for-woocommerce

WooCommerce Simple PDF Coupon module to create PDF coupons

30 active installs v1.0.0 PHP + WP 4.6+ Updated Apr 23, 2021
couponpdfwoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple PDF Coupon for WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Simple PDF Coupon for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "simple-pdf-coupon-for-woocommerce" plugin v1.0.0 exhibits a generally good security posture with no recorded vulnerabilities or known CVEs. The static analysis indicates a lack of direct attack surface points like AJAX handlers, REST API routes, or shortcodes, and no dangerous functions or direct SQL queries were detected. This suggests a limited exposure to common web vulnerabilities. However, a significant concern arises from the low percentage of properly escaped output (7%), implying a high risk of Cross-Site Scripting (XSS) vulnerabilities. Additionally, the taint analysis reveals two flows with unsanitized paths, which, although not classified as critical or high severity, warrant attention as they could potentially lead to unintended data handling or manipulation. The absence of nonce and capability checks, coupled with the bundling of the dompdf library without version information, are further areas that could be strengthened for a more robust security profile. While the plugin has no known exploitable history, the unaddressed output escaping issues and potential taint flows represent an immediate, albeit potentially lower-severity, risk.

Key Concerns

  • Low output escaping percentage
  • Unsanitized paths in taint flows
  • Bundled library (dompdf) without version
  • Zero capability checks
  • Zero nonce checks
Vulnerabilities
None known

Simple PDF Coupon for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Simple PDF Coupon for WooCommerce Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Simple PDF Coupon for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
14
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

dompdf

Output Escaping

7% escaped15 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
spcfw_addInputFieldsToProduct (simple-pdf-coupon-for-woocommerce.php:129)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Simple PDF Coupon for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 19
actionadmin_menuinc\inc-backend.php:7
actionadmin_initinc\inc-backend.php:20
actioninitsimple-pdf-coupon-for-woocommerce.php:17
actionwp_enqueue_scriptssimple-pdf-coupon-for-woocommerce.php:24
filterproduct_type_selectorsimple-pdf-coupon-for-woocommerce.php:37
actioninitsimple-pdf-coupon-for-woocommerce.php:54
filterwoocommerce_product_classsimple-pdf-coupon-for-woocommerce.php:68
filterwoocommerce_product_data_tabssimple-pdf-coupon-for-woocommerce.php:83
actionadmin_footersimple-pdf-coupon-for-woocommerce.php:99
actionwoocommerce_lemontec_gutschein_add_to_cartsimple-pdf-coupon-for-woocommerce.php:118
actionwoocommerce_before_add_to_cart_buttonsimple-pdf-coupon-for-woocommerce.php:128
filterwoocommerce_add_cart_item_datasimple-pdf-coupon-for-woocommerce.php:148
actionwoocommerce_before_calculate_totalssimple-pdf-coupon-for-woocommerce.php:165
filterwoocommerce_get_item_datasimple-pdf-coupon-for-woocommerce.php:181
actionwoocommerce_checkout_create_order_line_itemsimple-pdf-coupon-for-woocommerce.php:199
actionwoocommerce_thankyousimple-pdf-coupon-for-woocommerce.php:256
actionwoocommerce_email_before_order_tablesimple-pdf-coupon-for-woocommerce.php:283
filterwoocommerce_product_add_to_cart_textsimple-pdf-coupon-for-woocommerce.php:309
filtertemplate_includesimple-pdf-coupon-for-woocommerce.php:325
Maintenance & Trust

Simple PDF Coupon for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedApr 23, 2021
PHP min version
Downloads924

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Simple PDF Coupon for WooCommerce Developer Profile

Lemontec

2 plugins · 40 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple PDF Coupon for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-pdf-coupon-for-woocommerce/js/lemontec_coupon_scripts.js/wp-content/plugins/simple-pdf-coupon-for-woocommerce/css/lemontec_coupon_styles.css
Script Paths
wp-content/plugins/simple-pdf-coupon-for-woocommerce/js/lemontec_coupon_scripts.js
Version Parameters
simple-pdf-coupon-for-woocommerce/languageslemontec_coupon_scripts.js?ver=lemontec_coupon_styles.css?ver=1.0

HTML / DOM Fingerprints

CSS Classes
show_if_lemontec_gutschein
Data Attributes
id="lemontec_coupon_slider"name="lemontec_coupon_slider_value"id="lemontec_coupon_slider_value"name="lemontec_coupon_greeting"
JS Globals
spcfw_initspcfw_loadScriptsspcfw_addCustomProductTypespcfw_createProductTypeWC_Product_Gutscheinspcfw_wooProductClass+7 more
FAQ

Frequently Asked Questions about Simple PDF Coupon for WooCommerce