Custom EDD Currency Security & Risk Analysis

wordpress.org/plugins/sorsawodigital-edd-currency

Adds custom currency to Easy Digital Downloads.

90 active installs v1.0.11 PHP 7.3+ WP 6.1+ Updated Aug 8, 2023
add-currencycurrencieseasy-digital-downloadsedd
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Custom EDD Currency Safe to Use in 2026?

Generally Safe

Score 85/100

Custom EDD Currency has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The 'sorsawodigital-edd-currency' plugin, version 1.0.11, exhibits a strong security posture based on the provided static analysis. The absence of any recorded vulnerabilities, including critical or high severity CVEs, suggests a history of responsible development and maintenance. The code analysis reveals a commendable lack of dangerous functions, raw SQL queries, file operations, and external HTTP requests, all of which are significant security strengths. Furthermore, the plugin demonstrates good practices by consistently using prepared statements for its SQL queries and performing nonce checks on some operations, indicating an awareness of common WordPress security pitfalls. The taint analysis also shows no critical or high severity flows with unsanitized paths, further reinforcing the plugin's apparent security. The most notable weakness identified is the lack of capability checks. While the attack surface is currently zero, this absence could become a significant vulnerability if new entry points are introduced without proper authorization checks. The 75% output escaping rate, while not perfect, is reasonably good, though the remaining 25% could still pose a minor XSS risk if user-controlled data is involved in those unescaped outputs.

Key Concerns

  • No capability checks
  • 25% of outputs not properly escaped
Vulnerabilities
None known

Custom EDD Currency Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Custom EDD Currency Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

Custom EDD Currency Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
24 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

75% escaped32 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
currency_editor (sorsawodigital-edd-currency.php:194)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Custom EDD Currency Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_menusorsawodigital-edd-currency.php:42
actionadmin_noticessorsawodigital-edd-currency.php:43
filteredd_currenciessorsawodigital-edd-currency.php:46
filteredd_currency_symbolsorsawodigital-edd-currency.php:47
actionplugins_loadedsorsawodigital-edd-currency.php:384
Maintenance & Trust

Custom EDD Currency Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedAug 8, 2023
PHP min version7.3
Downloads5K

Community Trust

Rating100/100
Number of ratings1
Active installs90
Developer Profile

Custom EDD Currency Developer Profile

Just Test

1 plugin · 90 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom EDD Currency

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sorsawodigital-edd-currency/assets/css/admin.css/wp-content/plugins/sorsawodigital-edd-currency/assets/js/admin.js
Script Paths
/wp-content/plugins/sorsawodigital-edd-currency/assets/js/admin.js
Version Parameters
sorsawodigital-edd-currency/assets/css/admin.css?ver=sorsawodigital-edd-currency/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
sorsawodigital-edd-currency-tablesorsawodigital-edd-currency-edit-form
HTML Comments
<!-- Sorsawo Digital EDD Currency --><!-- Nonce verification -->
Data Attributes
data-currency-codedata-currency-namedata-currency-symbol
FAQ

Frequently Asked Questions about Custom EDD Currency