
Stock Exporter for WooCommerce Security & Risk Analysis
wordpress.org/plugins/stock-exporter-for-woocommerceExport a simple CSV file report with the current WooCommerce products stock.
Is Stock Exporter for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100Stock Exporter for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The stock-exporter-for-woocommerce plugin, version 1.5, exhibits a generally positive security posture based on the static analysis. The absence of identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength, drastically limiting the potential attack surface. The code also demonstrates good practices by exclusively using prepared statements for SQL queries and implementing a reasonable number of nonce and capability checks. However, the presence of file operations, even if not directly flagged as problematic in the static analysis, warrants cautious review as they can sometimes be points of exploitation if not handled meticulously.
The vulnerability history of this plugin is a notable concern. Two medium severity vulnerabilities have been recorded, specifically Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF). While there are no currently unpatched vulnerabilities, the recurring nature of these common web security flaws suggests a historical weakness in input sanitization and output escaping, or insufficient protection against unintended actions. The fact that the last vulnerability was recorded relatively recently (April 2023) indicates that these issues have not been a distant memory and could resurface if not addressed proactively.
In conclusion, while version 1.5 of stock-exporter-for-woocommerce appears to have a solid foundation with its limited attack surface and secure SQL practices, the past vulnerability record, particularly for XSS and CSRF, necessitates vigilance. Users should ensure they are running the latest patchable version and remain aware that even seemingly well-protected plugins can harbor latent risks if development practices don't consistently address input validation and output encoding throughout the entire codebase.
Key Concerns
- Medium severity XSS/CSRF vulnerabilities historically
- 85 total outputs, 79% properly escaped (6 outputs unescaped)
- 2 file operations identified in static analysis
Stock Exporter for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Stock Exporter for WooCommerce <= 1.1.0 - Reflected Cross-Site Scripting
Stock Exporter for WooCommerce <= 1.1.0 - Cross-Site Request Forgery
Stock Exporter for WooCommerce Code Analysis
Output Escaping
Data Flow Analysis
Stock Exporter for WooCommerce Attack Surface
WordPress Hooks 12
Maintenance & Trust
Stock Exporter for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Stock Exporter for WooCommerce Alternatives
Sold Individually for WooCommerce Product Variations
woo-sold-individually-for-variations
This plugin allows you to apply the “Sold individually” WooCommerce product setting to the whole variable product (including its variations), thus not …
Stock Display in Admin Order
stock-display-in-admin-order
Display each product stock numbers, or stock status, directly in the admin order page in Woocommerce.
Klarna for WooCommerce
klarna-payments-for-woocommerce
Grow your business for increased sales and enhanced shopping experiences at no extra costs.
Conversion Tracking for WooCommerce
woocommerce-conversion-tracking
Adds various conversion tracking codes to cart, checkout, registration success and product page on WooCommerce
Kustom Checkout for WooCommerce
klarna-checkout-for-woocommerce
The leading checkout in the Nordics, built for higher conversion and returning shoppers. Easy to integrate, supports Klarna and all popular payment me …
Stock Exporter for WooCommerce Developer Profile
21 plugins · 27K total installs
How We Detect Stock Exporter for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/stock-exporter-for-woocommerce/css/stock-exporter-for-woocommerce.css/wp-content/plugins/stock-exporter-for-woocommerce/js/stock-exporter-for-woocommerce.js/wp-content/plugins/stock-exporter-for-woocommerce/js/stock-exporter-for-woocommerce.jsstock-exporter-for-woocommerce/css/stock-exporter-for-woocommerce.css?ver=stock-exporter-for-woocommerce/js/stock-exporter-for-woocommerce.js?ver=HTML / DOM Fingerprints
woocoomerce-stock-export-form Partially WooCommerce CRUD ready - Products are still fetched from the database using WP_Query for filtering and performance reasons Init the class Load translation files Init internal variables +8 morename="woocoomerce_stock_export_products"name="woocoomerce_stock_export_fields[]"name="woocoomerce_stock_export_output"name="woocoomerce_stock_export_exclude_stock_compare"name="woocoomerce_stock_export_exclude_stock"name="woocoomerce_stock_export_exclude_meta_key"+1 more