TyresAddict – Wheel Product Filter Security & Risk Analysis

wordpress.org/plugins/tyresaddict-wheel-product-filter

Wheel Product Filter help shoppers find wheels on WooCommerce shop. Filter wheels by size, type and wheel brand.

60 active installs v1.4.15 PHP 7.1+ WP 4.7+ Updated Apr 25, 2025
automotiveproduct-filterwheel-searchwheelswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is TyresAddict – Wheel Product Filter Safe to Use in 2026?

Generally Safe

Score 100/100

TyresAddict – Wheel Product Filter has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The "tyresaddict-wheel-product-filter" plugin version 1.4.15 exhibits a strong security posture based on the provided static analysis. There are no identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events that are exposed. Furthermore, the code signals indicate a good practice of using prepared statements for all SQL queries and a high percentage of properly escaped outputs. The absence of dangerous functions, file operations, external HTTP requests, and bundled libraries further contributes to a secure foundation. The taint analysis also shows no concerning flows, indicating no immediate risks of unsanitized data processing. The plugin's vulnerability history is clean, with no recorded CVEs, suggesting a history of secure development and maintenance.

However, the complete lack of any capability checks or nonce checks across all entry points (even though the attack surface is zero) is a notable area of concern. While there are no current vulnerabilities or exposed entry points, this omission represents a potential future risk if any new entry points are introduced without proper authorization checks. The fact that 26% of outputs are not properly escaped, while not leading to a critical issue in this analysis, also presents a minor weakness that could be exploited in certain contexts or if the plugin's functionality evolves. Overall, the plugin is very secure, but these minor oversights in authorization checks and output escaping prevent a perfect score.

Key Concerns

  • Capability checks are missing
  • Nonce checks are missing
  • Outputs not properly escaped (26%)
Vulnerabilities
None known

TyresAddict – Wheel Product Filter Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

TyresAddict – Wheel Product Filter Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
21
59 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

74% escaped80 total outputs
Attack Surface

TyresAddict – Wheel Product Filter Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
filterwoocommerce_product_query_meta_queryincludes\Plugin.php:124
actionwp_enqueue_scriptsincludes\Plugin.php:126
actionwp_enqueue_scriptsincludes\Plugin.php:127
actionadmin_noticesincludes\Woo.php:60
actionplugins_loadedtyresaddict-wheel-product-filter.php:57
actionwidgets_inittyresaddict-wheel-product-filter.php:70
Maintenance & Trust

TyresAddict – Wheel Product Filter Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 25, 2025
PHP min version7.1
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs60
Developer Profile

TyresAddict – Wheel Product Filter Developer Profile

TyresAddict

5 plugins · 370 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect TyresAddict – Wheel Product Filter

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tyresaddict-wheel-product-filter/assets/js/wheel-filter.js/wp-content/plugins/tyresaddict-wheel-product-filter/assets/css/wheel-filter.css
Script Paths
tyresaddict-wheel-product-filter
Version Parameters
tyresaddict-wheel-product-filter/assets/js/wheel-filter.js?ver=tyresaddict-wheel-product-filter/assets/css/wheel-filter.css?ver=

HTML / DOM Fingerprints

CSS Classes
tyresaddict-wheel-filter-widget
JS Globals
taw_wheel_filter
Shortcode Output
[tyresaddict-wheel-filter]
FAQ

Frequently Asked Questions about TyresAddict – Wheel Product Filter