
Social Notifications for WooCommerce Security & Risk Analysis
wordpress.org/plugins/social-notifications-for-woocommerceSends WhatsApp notifications to your clients for order status changes. You can also receive a WhatsApp message when a new order is received.
Is Social Notifications for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/100Social Notifications for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'social-notifications-for-woocommerce' plugin v1.1.2 presents a mixed security posture. On the positive side, it demonstrates good practices regarding SQL query sanitization and output escaping, with 100% of SQL queries using prepared statements and 95% of outputs properly escaped. The absence of recorded vulnerabilities and CVEs in its history is also a strong indicator of a well-maintained codebase. However, significant security concerns arise from the plugin's attack surface. With two AJAX handlers identified, both lacking authentication checks, there's a clear risk of unauthorized actions being performed if these handlers can be triggered externally. The complete absence of nonce checks and capability checks further exacerbates this risk, making these AJAX endpoints vulnerable to cross-site request forgery (CSRF) and unauthorized privilege escalation respectively. The bundled TCPDF library v1.0.004 is also a point of concern, as older versions of libraries can often harbor exploitable vulnerabilities. In conclusion, while the plugin benefits from secure database interactions and output handling, the unprotected AJAX endpoints and outdated bundled library represent critical security weaknesses that require immediate attention.
Key Concerns
- AJAX handlers without auth checks
- Missing nonce checks
- Missing capability checks
- Bundled outdated library TCPDF v1.0.004
Social Notifications for WooCommerce Security Vulnerabilities
Social Notifications for WooCommerce Code Analysis
Bundled Libraries
Output Escaping
Social Notifications for WooCommerce Attack Surface
AJAX Handlers 2
WordPress Hooks 12
Maintenance & Trust
Social Notifications for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Social Notifications for WooCommerce Alternatives
Brader Kits
brader-kits
Integrate your WooCommerce online store and WhatsApp using this plugin. This plugin will automatically notify your customer if their order status is c …
Jetly – Notify
jetly-notify
Deliver powerful WhatsApp order alerts, recover abandoned carts, and offer real-time chat assistance on your WooCommerce store using Jetly.
ShopNotify – Personalized Cart Recovery for WooCommerce
shopnotify
Track abandoned carts for logged-in and guest users in WooCommerce, send automated WhatsApp reminders, and gain insights into cart recovery and abando …
ToolBridges Order Notification
toolbridges-order-notification
Seamless WooCommerce to WhatsApp Integration by ToolBridges. Send automated order notifications directly to your customers on WhatsApp.
Wappbiz
wappbiz
Advanced integration with the Wappbiz API for seamless WooCommerce order and cart synchronization.
Social Notifications for WooCommerce Developer Profile
1 plugin · 10 total installs
How We Detect Social Notifications for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/social-notifications-for-woocommerce/css/style.css/wp-content/plugins/social-notifications-for-woocommerce/js/script.js/wp-content/plugins/social-notifications-for-woocommerce/js/script.jssocial-notifications-for-woocommerce/css/style.css?ver=social-notifications-for-woocommerce/js/script.js?ver=HTML / DOM Fingerprints
suwcwam_settingsSU_WC_WA_Message_APIsuwcwam_loggersuwcwam_plugin_file