SizeMe for WooCommerce Security & Risk Analysis

wordpress.org/plugins/sizeme-for-woocommerce

SizeMe is a web store plugin that enables your consumers to input their measurements and get fit recommendations based on actual product data.

50 active installs v2.3.5 PHP 5.2.4+ WP 3.8+ Updated Dec 16, 2024
measurementssize-guidesize-recommendationssizeguidesizeme
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is SizeMe for WooCommerce Safe to Use in 2026?

Generally Safe

Score 92/100

SizeMe for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'sizeme-for-woocommerce' v2.3.5 plugin demonstrates a generally strong security posture. The static analysis reveals no critical or high-severity code signals such as dangerous functions, raw SQL queries, or file operations. The plugin also shows good practices in output escaping, with 78% of outputs properly escaped, and all SQL queries utilizing prepared statements, which significantly reduces the risk of SQL injection. Furthermore, the lack of recorded CVEs in its vulnerability history suggests a history of responsible development and maintenance, or at least no publicly disclosed critical vulnerabilities. However, a significant concern is the complete absence of nonce and capability checks across all entry points, including its single shortcode. This could potentially open the door to various attacks, such as Cross-Site Request Forgery (CSRF) or privilege escalation, if the shortcode's functionality is sensitive or can be manipulated by unauthenticated or lower-privileged users. The external HTTP request also warrants attention to ensure it is being made securely and to a trusted endpoint.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
  • External HTTP request with no context on security
  • Some outputs not properly escaped
Vulnerabilities
None known

SizeMe for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

SizeMe for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
28 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

78% escaped36 total outputs
Attack Surface

SizeMe for WooCommerce Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[sizeme_write_scripts] sizeme-for-woocommerce.php:895
WordPress Hooks 9
filterscript_loader_tagsizeme-for-woocommerce.php:891
actionwp_enqueue_scriptssizeme-for-woocommerce.php:893
actionwoocommerce_before_single_productsizeme-for-woocommerce.php:894
actionwoocommerce_add_to_cartsizeme-for-woocommerce.php:897
actionwoocommerce_thankyousizeme-for-woocommerce.php:898
filterwoocommerce_locate_templatesizeme-for-woocommerce.php:900
filterwoocommerce_get_settings_pagessizeme-for-woocommerce.php:911
actionwoocommerce_add_to_cartsizeme-for-woocommerce.php:914
actionplugins_loadedsizeme-for-woocommerce.php:1086
Maintenance & Trust

SizeMe for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 16, 2024
PHP min version5.2.4
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

SizeMe for WooCommerce Developer Profile

SizeMe

1 plugin · 50 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SizeMe for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sizeme-for-woocommerce/sizeme-for-woocommerce.css/wp-content/plugins/sizeme-for-woocommerce/sizeme-for-woocommerce.js
Script Paths
/wp-content/plugins/sizeme-for-woocommerce/sizeme-for-woocommerce.js
Version Parameters
sizeme-for-woocommerce/sizeme-for-woocommerce.css?ver=sizeme-for-woocommerce/sizeme-for-woocommerce.js?ver=

HTML / DOM Fingerprints

CSS Classes
sizeme-buttonsizeme-btn-primarysizeme-input-groupsizeme-measurement-label
Data Attributes
data-sizeme-elementdata-sizeme-id
JS Globals
sizeme_wc_params
FAQ

Frequently Asked Questions about SizeMe for WooCommerce