StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Security & Risk Analysis

wordpress.org/plugins/storegrowth-sales-booster

WooCommerce Sales Booster with BOGO, upsells, direct checkout, quick view, side cart, countdowns, floating bar, free shipping & stock bar.

2K active installs v2.0.5 PHP 7.4+ WP 6.8+ Updated Feb 5, 2026
bogodirect-checkoutquick-viewside-cartupsells
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Safe to Use in 2026?

Generally Safe

Score 100/100

StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The storegrowth-sales-booster plugin v2.0.5 exhibits a generally strong security posture, with a high percentage of properly escaped output and a lack of dangerous functions or file operations. The absence of any known vulnerabilities or CVEs further contributes to its positive security profile. However, the presence of 39 AJAX handlers, with 2 of them lacking authentication checks, presents a significant concern. While the taint analysis did not reveal critical or high severity issues, the 2 flows with unsanitized paths warrant careful consideration, as they could potentially lead to vulnerabilities if exploited in conjunction with the unprotected AJAX endpoints. The plugin's reliance on nonce and capability checks for most of its entry points is a good practice, but the identified unprotected AJAX handlers create an exploitable surface. Overall, the plugin is well-developed with good coding practices but has a specific area of weakness in its AJAX security that needs immediate attention.

Key Concerns

  • Unprotected AJAX handlers found
  • Taint flows with unsanitized paths
Vulnerabilities
None known

StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Code Analysis

Dangerous Functions
0
Raw SQL Queries
15
17 prepared
Unescaped Output
9
553 escaped
Nonce Checks
30
Capability Checks
15
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

53% prepared32 total queries

Output Escaping

98% escaped562 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

20 flows2 with unsanitized paths
handle_external_redirects (includes\Admin\AdminMenu.php:173)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Attack Surface

Entry Points39
Unprotected2

AJAX Handlers 39

authwp_ajax_spsg_admin_ajaxincludes\Ajax.php:55
authwp_ajax_spsg_process_user_concent_dataincludes\Ajax.php:59
authwp_ajax_spsg_inisetup_flag_updateincludes\Ajax.php:60
authwp_ajax_spsg_bogo_vendors_get_settingsintegrations\includes\Dokan\Ajax.php:24
authwp_ajax_spsg_bogo_vendors_save_settingsintegrations\includes\Dokan\Ajax.php:25
authwp_ajax_bogo_category_msg_createmodules\bogo\includes\Ajax.php:30
noprivwp_ajax_bogo_category_msg_createmodules\bogo\includes\Ajax.php:31
authwp_ajax_bogo_category_msg_listmodules\bogo\includes\Ajax.php:33
noprivwp_ajax_bogo_category_msg_listmodules\bogo\includes\Ajax.php:34
authwp_ajax_spsg_bogo_general_save_settingsmodules\bogo\includes\Ajax.php:36
authwp_ajax_spsg_bogo_general_get_settingsmodules\bogo\includes\Ajax.php:37
authwp_ajax_offer_product_add_to_cartmodules\bogo\includes\Ajax.php:39
noprivwp_ajax_offer_product_add_to_cartmodules\bogo\includes\Ajax.php:40
authwp_ajax_update_offer_productmodules\bogo\includes\Ajax.php:42
noprivwp_ajax_update_offer_productmodules\bogo\includes\Ajax.php:43
authwp_ajax_spsg_countdown_timer_save_settingsmodules\countdown-timer\includes\Ajax.php:31
authwp_ajax_spsg_countdown_timer_get_settingsmodules\countdown-timer\includes\Ajax.php:32
authwp_ajax_spsg_direct_checkout_save_settingsmodules\direct-checkout\includes\Ajax.php:30
authwp_ajax_spsg_direct_checkout_get_settingsmodules\direct-checkout\includes\Ajax.php:31
authwp_ajax_spsg_floating_notification_bar_save_settingsmodules\floating-notification-bar\includes\Ajax.php:30
authwp_ajax_spsg_floating_notification_bar_get_settingsmodules\floating-notification-bar\includes\Ajax.php:31
authwp_ajax_spsg_fly_cart_save_settingsmodules\fly-cart\includes\Ajax.php:31
authwp_ajax_spsg_fly_cart_get_settingsmodules\fly-cart\includes\Ajax.php:32
noprivwp_ajax_spsg_fly_cart_frontendmodules\fly-cart\includes\Ajax.php:34
authwp_ajax_spsg_fly_cart_frontendmodules\fly-cart\includes\Ajax.php:35
authwp_ajax_spsg_pd_banner_save_settingsmodules\progressive-discount-banner\includes\Ajax.php:30
authwp_ajax_spsg_pd_banner_get_settingsmodules\progressive-discount-banner\includes\Ajax.php:31
authwp_ajax_spsg_quick_view_save_settingsmodules\quick-view\includes\Ajax.php:31
authwp_ajax_spsg_quick_view_get_settingsmodules\quick-view\includes\Ajax.php:32
authwp_ajax_spsgqcv_quickviewmodules\quick-view\includes\Ajax.php:33
noprivwp_ajax_spsgqcv_quickviewmodules\quick-view\includes\Ajax.php:34
authwp_ajax_popup_productsmodules\sales-pop\includes\Ajax.php:30
noprivwp_ajax_popup_productsmodules\sales-pop\includes\Ajax.php:31
authwp_ajax_create_popupmodules\sales-pop\includes\Ajax.php:33
noprivwp_ajax_create_popupmodules\sales-pop\includes\Ajax.php:34
authwp_ajax_spsg_stock_bar_save_settingsmodules\stock-bar\includes\Ajax.php:31
authwp_ajax_spsg_stock_bar_get_settingsmodules\stock-bar\includes\Ajax.php:32
authwp_ajax_upsell_offer_product_add_to_cartmodules\upsell-order-bump\includes\OrderBumpAjax.php:26
noprivwp_ajax_upsell_offer_product_add_to_cartmodules\upsell-order-bump\includes\OrderBumpAjax.php:27
WordPress Hooks 114
actionadmin_initincludes\Admin\AdminHooks.php:30
actionadmin_menuincludes\Admin\AdminMenu.php:28
filtersubmenu_fileincludes\Admin\AdminMenu.php:29
actioninitincludes\Assets.php:42
actionadmin_enqueue_scriptsincludes\Assets.php:43
actionadmin_enqueue_scriptsincludes\Assets.php:44
actionwoocommerce_loadedincludes\Bootstrap.php:33
actionadmin_noticesincludes\Bootstrap.php:34
actionrest_api_initincludes\Bootstrap.php:82
actionadmin_enqueue_scriptsintegrations\includes\Dokan\Admin\EnqueueScript.php:32
actionrest_api_initintegrations\includes\Dokan\Api.php:34
filterdokan_get_dashboard_navintegrations\includes\Dokan\Dashboard\Bogo.php:34
actionwp_enqueue_scriptsintegrations\includes\Dokan\Dashboard\Bogo.php:35
filterspsg_bogo_product_argsintegrations\includes\Dokan\Dashboard\Bogo.php:36
filterspsg_bogo_rest_query_filtersintegrations\includes\Dokan\Dashboard\Bogo.php:37
filterspsg_bogo_created_byintegrations\includes\Dokan\Dashboard\Bogo.php:38
filterspsg_bogo_check_permissionintegrations\includes\Dokan\Dashboard\Bogo.php:39
filterspsg_product_query_argsintegrations\includes\Dokan\Dashboard\Bogo.php:40
filterdokan_query_var_filterintegrations\includes\Dokan\Dashboard\Dashboard.php:55
actionwoocommerce_flush_rewrite_rulesintegrations\includes\Dokan\Dashboard\Dashboard.php:58
actiondokan_product_edit_after_inventory_variantsintegrations\includes\Dokan\Dashboard\Dashboard.php:61
actiondokan_process_product_metaintegrations\includes\Dokan\Dashboard\Dashboard.php:64
filterdokan_query_var_filterintegrations\includes\Dokan\Dashboard\Dashboard.php:88
actionwp_enqueue_scriptsintegrations\includes\Dokan\Dashboard\EnqueueScript.php:29
actionspsg_fly_cart_after_single_item_columnsintegrations\includes\Dokan\Frontend\Frontend.php:35
actioninitmodules\bogo\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\bogo\includes\EnqueueScript.php:34
actionadmin_enqueue_scriptsmodules\bogo\includes\EnqueueScript.php:35
actionwp_enqueue_scriptsmodules\bogo\includes\EnqueueScript.php:36
actionwp_enqueue_scriptsmodules\bogo\includes\EnqueueScript.php:37
actionwoocommerce_single_product_summarymodules\bogo\includes\OrderBogo.php:30
actionwoocommerce_before_calculate_totalsmodules\bogo\includes\OrderBogo.php:31
actionwoocommerce_add_to_cartmodules\bogo\includes\OrderBogo.php:33
actionwoocommerce_update_cart_action_cart_updatedmodules\bogo\includes\OrderBogo.php:34
actionwoocommerce_after_cart_item_quantity_updatemodules\bogo\includes\OrderBogo.php:35
actionwoocommerce_cart_loaded_from_sessionmodules\bogo\includes\OrderBogo.php:36
filterwoocommerce_product_data_tabsmodules\bogo\includes\OrderBogo.php:38
actionwoocommerce_product_data_panelsmodules\bogo\includes\OrderBogo.php:39
actionwoocommerce_process_product_metamodules\bogo\includes\OrderBogo.php:40
actionwoocommerce_cart_item_removedmodules\bogo\includes\OrderBogo.php:42
filterwoocommerce_cart_item_classmodules\bogo\includes\OrderBogo.php:43
filterwoocommerce_cart_item_namemodules\bogo\includes\OrderBogo.php:44
actionwoocommerce_before_shop_loop_item_titlemodules\bogo\includes\OrderBogo.php:46
actionwoocommerce_before_single_product_summarymodules\bogo\includes\OrderBogo.php:47
filterwoocommerce_cart_item_pricemodules\bogo\includes\OrderBogo.php:48
actionwoocommerce_after_cart_item_quantity_updatemodules\bogo\includes\OrderBogo.php:51
actionwoocommerce_remove_cart_itemmodules\bogo\includes\OrderBogo.php:54
actionwoocommerce_before_add_to_cart_formmodules\countdown-timer\includes\CommonHooks.php:32
filterwoocommerce_product_data_tabsmodules\countdown-timer\includes\CommonHooks.php:34
actionwoocommerce_product_data_panelsmodules\countdown-timer\includes\CommonHooks.php:35
actionwoocommerce_admin_process_product_objectmodules\countdown-timer\includes\CommonHooks.php:36
filterwoocommerce_product_get_pricemodules\countdown-timer\includes\CommonHooks.php:38
filterwoocommerce_product_variation_get_pricemodules\countdown-timer\includes\CommonHooks.php:39
filterwoocommerce_product_is_on_salemodules\countdown-timer\includes\CommonHooks.php:40
actionwp_enqueue_scriptsmodules\countdown-timer\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\countdown-timer\includes\EnqueueScript.php:34
filterwoocommerce_loop_add_to_cart_linkmodules\direct-checkout\includes\CommonHooks.php:41
actionwoocommerce_after_add_to_cart_buttonmodules\direct-checkout\includes\CommonHooks.php:42
filterwoocommerce_product_data_tabsmodules\direct-checkout\includes\CommonHooks.php:46
actionwoocommerce_product_data_panelsmodules\direct-checkout\includes\CommonHooks.php:47
actionwoocommerce_process_product_metamodules\direct-checkout\includes\CommonHooks.php:48
filterwoocommerce_loop_add_to_cart_linkmodules\direct-checkout\includes\CommonHooks.php:51
filterwc_get_templatemodules\direct-checkout\includes\CommonHooks.php:52
filterwoocommerce_locate_templatemodules\direct-checkout\includes\CommonHooks.php:53
filterwoocommerce_loop_add_to_cart_linkmodules\direct-checkout\includes\CommonHooks.php:57
filterwc_get_templatemodules\direct-checkout\includes\CommonHooks.php:58
filterwoocommerce_locate_templatemodules\direct-checkout\includes\CommonHooks.php:59
actionwp_enqueue_scriptsmodules\direct-checkout\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\direct-checkout\includes\EnqueueScript.php:34
actionwp_footermodules\floating-notification-bar\includes\CommonHooks.php:39
actionwp_enqueue_scriptsmodules\floating-notification-bar\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\floating-notification-bar\includes\EnqueueScript.php:34
filterwoocommerce_add_to_cart_fragmentsmodules\fly-cart\includes\CommonHooks.php:30
actionwp_footermodules\fly-cart\includes\CommonHooks.php:32
actionspsg_woocommerce_before_cart_collateralsmodules\fly-cart\includes\CommonHooks.php:34
filtertemplate_includemodules\fly-cart\includes\CommonHooks.php:36
actionwoocommerce_proceed_to_checkoutmodules\fly-cart\includes\CommonHooks.php:77
actionwp_enqueue_scriptsmodules\fly-cart\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\fly-cart\includes\EnqueueScript.php:34
actionwp_footermodules\progressive-discount-banner\includes\CommonHooks.php:39
filterwoocommerce_add_to_cart_fragmentsmodules\progressive-discount-banner\includes\CommonHooks.php:41
actionwp_enqueue_scriptsmodules\progressive-discount-banner\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\progressive-discount-banner\includes\EnqueueScript.php:34
actionwoocommerce_add_to_cartmodules\progressive-discount-banner\includes\WoocommerceDiscount.php:33
actionwoocommerce_cart_item_restoredmodules\progressive-discount-banner\includes\WoocommerceDiscount.php:34
actionwoocommerce_cart_calculate_feesmodules\progressive-discount-banner\includes\WoocommerceDiscount.php:36
filterwoocommerce_add_to_cart_redirectmodules\quick-view\includes\CommonHooks.php:30
actionspsgqcv_product_summarymodules\quick-view\includes\CommonHooks.php:76
actionwp_enqueue_scriptsmodules\quick-view\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\quick-view\includes\EnqueueScript.php:34
actionwp_enqueue_scriptsmodules\sales-pop\includes\EnqueueScript.php:34
actionwp_enqueue_scriptsmodules\sales-pop\includes\EnqueueScript.php:35
actionadmin_enqueue_scriptsmodules\sales-pop\includes\EnqueueScript.php:38
actionadmin_headmodules\sales-pop\includes\EnqueueScript.php:128
actionplugins_loadedmodules\sales-pop\includes\SalesPOP.php:30
actionwp_footermodules\sales-pop\includes\SalesPOP.php:31
actionwoocommerce_before_add_to_cart_formmodules\stock-bar\includes\CommonHooks.php:30
filterwoocommerce_get_stock_htmlmodules\stock-bar\includes\CommonHooks.php:31
actionwp_enqueue_scriptsmodules\stock-bar\includes\EnqueueScript.php:33
actionadmin_enqueue_scriptsmodules\stock-bar\includes\EnqueueScript.php:34
actionwoocommerce_blocks_mini-cart_block_registrationmodules\upsell-order-bump\includes\Blocks\BlockRegistry.php:10
actionwoocommerce_blocks_cart_block_registrationmodules\upsell-order-bump\includes\Blocks\BlockRegistry.php:11
actionwoocommerce_blocks_checkout_block_registrationmodules\upsell-order-bump\includes\Blocks\BlockRegistry.php:12
actionadmin_enqueue_scriptsmodules\upsell-order-bump\includes\EnqueueScript.php:34
actionadmin_enqueue_scriptsmodules\upsell-order-bump\includes\EnqueueScript.php:35
actionwp_enqueue_scriptsmodules\upsell-order-bump\includes\EnqueueScript.php:36
actionwp_enqueue_scriptsmodules\upsell-order-bump\includes\EnqueueScript.php:37
actionwoocommerce_review_order_before_submitmodules\upsell-order-bump\includes\OrderBump.php:53
actionwoocommerce_before_calculate_totalsmodules\upsell-order-bump\includes\OrderBump.php:54
actionwoocommerce_cart_item_removedmodules\upsell-order-bump\includes\OrderBump.php:55
actionwoocommerce_after_cart_item_quantity_updatemodules\upsell-order-bump\includes\OrderBump.php:56
filterwoocommerce_cart_item_quantitymodules\upsell-order-bump\includes\Validators\CartValidator.php:13
actionwoocommerce_after_checkout_validationmodules\upsell-order-bump\includes\Validators\CartValidator.php:14
actionwoocommerce_store_api_cart_errorsmodules\upsell-order-bump\includes\Validators\CartValidator.php:15
Maintenance & Trust

StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedFeb 5, 2026
PHP min version7.4
Downloads13K

Community Trust

Rating100/100
Number of ratings7
Active installs2K
Developer Profile

StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart Developer Profile

weDevs

20 plugins · 113K total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
366 days
View full developer profile
Detection Fingerprints

How We Detect StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/storegrowth-sales-booster/assets/build/modules.asset.php/wp-content/plugins/storegrowth-sales-booster/assets/build/modules.js/wp-content/plugins/storegrowth-sales-booster/assets/build/settings.asset.php/wp-content/plugins/storegrowth-sales-booster/assets/build/settings.js/wp-content/plugins/storegrowth-sales-booster/assets/build/modules.css
Script Paths
/wp-content/plugins/storegrowth-sales-booster/assets/build/modules.js/wp-content/plugins/storegrowth-sales-booster/assets/build/settings.js
Version Parameters
storegrowth-sales-booster/assets/build/modules.asset.phpstoregrowth-sales-booster/assets/build/modules.jsstoregrowth-sales-booster/assets/build/settings.asset.phpstoregrowth-sales-booster/assets/build/settings.jsstoregrowth-sales-booster/assets/build/modules.css

HTML / DOM Fingerprints

CSS Classes
spsg-admin-style
JS Globals
spsgAdminspsg
FAQ

Frequently Asked Questions about StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart