SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Security & Risk Analysis

wordpress.org/plugins/sme-accounting

One Stop Business & Accounting Solution For SMEs From Anywhere Around The World.

10 active installs v1.0.2 PHP 7.4+ WP 5.0+ Updated Sep 10, 2023
bookkeepinge-commercef-commercesaleswoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Safe to Use in 2026?

Generally Safe

Score 85/100

SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The "sme-accounting" v1.0.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any identified CVEs in its vulnerability history, coupled with no critical or high severity taint flows, suggests diligent development practices regarding known vulnerabilities and complex code injection risks. The plugin also appears to have a minimal attack surface, with no exposed AJAX handlers, REST API routes, shortcodes, or cron events without appropriate authorization checks. This significantly reduces the opportunities for external attackers to directly interact with the plugin in unintended ways.

However, there are areas for improvement. The plugin's handling of SQL queries is a notable concern, as 100% of its single SQL query does not utilize prepared statements. This is a common vector for SQL injection vulnerabilities, especially if the query involves user-supplied input. While no SQL injection has been explicitly flagged in the taint analysis, the raw SQL usage is a significant risk that should be addressed proactively. Additionally, while the majority of output is properly escaped, the 43% that is not could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is outputted without proper sanitization.

In conclusion, the "sme-accounting" plugin has commendable strengths in its limited attack surface and clean vulnerability history. Nevertheless, the unaddressed risk of raw SQL queries and the presence of unescaped output represent clear security weaknesses that require immediate attention to maintain a robust security profile.

Key Concerns

  • 100% of SQL queries not using prepared statements
  • 43% of output not properly escaped
Vulnerabilities
None known

SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
9
12 escaped
Nonce Checks
3
Capability Checks
3
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

57% escaped21 total outputs
Attack Surface

SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 17
actionadmin_initincludes\Core\Admin.php:22
actioninitincludes\Core\SMEVai.php:104
filterhttp_request_argsincludes\Core\SMEVai.php:123
actionsmevai::before_settingsincludes\Platform\WooCommerce.php:21
actionsmevai::save_settingsincludes\Platform\WooCommerce.php:22
actionwoocommerce_webhook_http_argsincludes\Platform\WooCommerce.php:33
actionadmin_enqueue_scriptsincludes\Platform\WooCommerce.php:39
filterwoocommerce_settings_tabs_arrayincludes\Platform\WooCommerce.php:43
actionwoocommerce_settings_sme-accountingincludes\Platform\WooCommerce.php:44
actionwoocommerce_after_settings_sme-accountingincludes\Platform\WooCommerce.php:45
actionadmin_initincludes\Platform\WooCommerce.php:47
actionadmin_initincludes\Platform\WooCommerce.php:48
actionwoocommerce_variation_options_pricingincludes\Platform\WooCommerce.php:52
actionwoocommerce_save_product_variationincludes\Platform\WooCommerce.php:53
filterwoocommerce_available_variationincludes\Platform\WooCommerce.php:54
actionadd_meta_boxesincludes\Platform\WooCommerce.php:59
actionsave_postincludes\Platform\WooCommerce.php:60
Maintenance & Trust

SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedSep 10, 2023
PHP min version7.4
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World Developer Profile

PriyoMukul

2 plugins · 210 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sme-accounting/assets/css/smevai-woocommerce.css/wp-content/plugins/sme-accounting/assets/js/smevai-woocommerce.js
Script Paths
/wp-content/plugins/sme-accounting/assets/js/smevai-woocommerce.js
Version Parameters
sme-accounting/assets/css/smevai-woocommerce.css?ver=sme-accounting/assets/js/smevai-woocommerce.js?ver=

HTML / DOM Fingerprints

CSS Classes
smevai-settings-wrappersmevai-settings-sectionsmevai-form-groupsmevai-labelsmevai-inputsmevai-woocommerce-notice
HTML Comments
<!-- SMEVai WooCommerce Settings Fields. ( Not in use right now ) --><!-- SMEVai Settings for WooCommerce. --><!-- WooCommerce Settings Footer For SMEVai. --><!-- Settings Page Submit Processor. -->+5 more
Data Attributes
data-smevai-noncedata-smevai-settings-nonce
JS Globals
smevai_ajax_object
REST Endpoints
/wp-json/smevai/v1/sync/product/wp-json/smevai/v1/sync/order
FAQ

Frequently Asked Questions about SME Accounting – One Stop Business & Accounting Solution For SMEs From Anywhere Around The World