
Stock Level Pricing Security & Risk Analysis
wordpress.org/plugins/stock-level-pricingCreate pricing based on current Inventory status, give discounts or increase price depending on how many pieces of product left in stock
Is Stock Level Pricing Safe to Use in 2026?
Generally Safe
Score 92/100Stock Level Pricing has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The stock-level-pricing plugin v1.0.3 demonstrates a generally good security posture with several strengths. The absence of known vulnerabilities (CVEs) and the consistent use of prepared statements for all SQL queries are positive indicators. Furthermore, the vast majority of output is properly escaped, and there are no concerning file operations or external HTTP requests. The presence of nonce and capability checks, though limited in number, suggests some awareness of WordPress security best practices.
However, there are specific areas of concern that warrant attention. The analysis reveals one unprotected AJAX handler, representing a direct entry point without authentication, which is a significant risk. Additionally, two taint flows with unsanitized paths were identified at a high severity. While these may not have materialized into public CVEs, they indicate potential for exploitation if malicious data is passed through these flows. The limited number of capability checks (2) and nonce checks (8) in relation to the total entry points also suggests potential for further hardening. The bundled Freemius library, while not explicitly stated as outdated, is a common vector for vulnerabilities if not kept up-to-date.
In conclusion, the plugin has a solid foundation with its secure SQL handling and output escaping. However, the unprotected AJAX handler and high-severity taint flows are critical weaknesses that need immediate remediation. The plugin's vulnerability history is reassuring, but the identified code signals suggest proactive security measures could be further enhanced to mitigate potential future risks.
Key Concerns
- Unprotected AJAX handler
- High severity unsanitized taint flows
- Bundled Freemius v1.0 library
Stock Level Pricing Security Vulnerabilities
Stock Level Pricing Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Stock Level Pricing Attack Surface
AJAX Handlers 5
WordPress Hooks 48
Maintenance & Trust
Stock Level Pricing Maintenance & Trust
Maintenance Signals
Community Trust
Stock Level Pricing Alternatives
Discount Rules for WooCommerce
woo-discount-rules
The discount plugin for WooCommerce helps you create bulk discount, quantity discount, storewide sale, dynamic pricing discount offers easily.
Advanced Dynamic Pricing and Discount Rules for WooCommerce
advanced-dynamic-pricing-for-woocommerce
The discount plugin for WooCommerce supports any dynamic pricing discount: bulk discount, role discount, storewide, bogo, gifts, cart discount
Stock Manager for WooCommerce
woocommerce-stock-manager
WooCommerce stock management plugin to manage and edit product stock and their variables from a single dashboard. Stock log, import/export, filters!
Wholesale Suite – B2B, Dynamic Pricing & WooCommerce Wholesale Prices
woocommerce-wholesale-prices
WooCommerce wholesale plugin for serving wholesale & B2B customers. Adds wholesale pricing, user roles, dynamic pricing & more.
Smart Manager – Advanced WooCommerce Bulk Edit & Inventory Management
smart-manager-for-wp-e-commerce
WooCommerce Advanced Bulk Edit products, orders, & posts in an Excel-like sheet editor. Get advanced WooCommerce stock, pricing, & order management.
Stock Level Pricing Developer Profile
1 plugin · 10 total installs
How We Detect Stock Level Pricing
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/stock-level-pricing/admin/css/stock-level-pricing-admin.css/wp-content/plugins/stock-level-pricing/admin/js/stock-level-pricing-admin.js/wp-content/plugins/stock-level-pricing/frontend/css/stock-level-pricing-frontend.css/wp-content/plugins/stock-level-pricing/frontend/js/stock-level-pricing-frontend.jsstock-level-pricing/admin/css/stock-level-pricing-admin.css?ver=stock-level-pricing/admin/js/stock-level-pricing-admin.js?ver=stock-level-pricing/frontend/css/stock-level-pricing-frontend.css?ver=stock-level-pricing/frontend/js/stock-level-pricing-frontend.js?ver=HTML / DOM Fingerprints
stock-level-pricing-table-containerstock-level-pricing-stock-levelstock-level-pricing-price-adjustmentstock-level-pricing-action-buttonsstocklvl-price-adjustment-wrapper<!-- Bulk Actions --><!-- Main Table -->data-stock-level-iddata-product-iddata-variation-idstocklvl_ajax_object[display_stock_level_table]