Ultimate Product Table for WooCommerce Security & Risk Analysis

wordpress.org/plugins/ultimate-product-table-for-woocommerce

Manage and display WooCommerce products in powerful, flexible, and responsive product tables with a visual drag-and-drop builder. No coding required.

0 active installs v1.0.1 PHP 7.4+ WP 5.0+ Updated Oct 16, 2025
comparison-tableproduct-gridproduct-listproduct-tablewoocommerce-product-table
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ultimate Product Table for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Ultimate Product Table for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin 'ultimate-product-table-for-woocommerce' v1.0.1 demonstrates a generally good security posture with several strengths. Its SQL queries are all properly prepared, and a very high percentage of output is correctly escaped, indicating good practices for preventing common web vulnerabilities. The absence of known CVEs and a clean vulnerability history further supports a positive security outlook.

However, there are notable areas of concern. The plugin has a moderate attack surface with 10 total entry points, and crucially, 3 of these (AJAX handlers) lack authentication checks. This presents a direct risk of unauthorized actions being performed by unauthenticated users. While no critical taint flows or dangerous functions were identified, the potential for abuse of these unprotected AJAX endpoints remains a significant weakness. The presence of a bundled library (Select2) could also be a minor concern if it's an older version, though this is not explicitly detailed in the provided data.

In conclusion, while the plugin has strong foundations in secure coding practices for SQL and output handling, the unprotected AJAX endpoints are a critical vulnerability that requires immediate attention. The lack of recorded vulnerabilities in its history is a positive sign, but it doesn't negate the immediate risk posed by the current code.

Key Concerns

  • AJAX handlers without authentication checks
  • Bundled library (Select2)
Vulnerabilities
None known

Ultimate Product Table for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Ultimate Product Table for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
12 prepared
Unescaped Output
30
1121 escaped
Nonce Checks
10
Capability Checks
0
File Operations
2
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

100% prepared12 total queries

Output Escaping

97% escaped1151 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
admin_page_add_table (includes\add_table.php:28)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

Ultimate Product Table for WooCommerce Attack Surface

Entry Points10
Unprotected3

AJAX Handlers 9

authwp_ajax_plugincy_add_to_cartincludes\add-to-cart.php:59
noprivwp_ajax_plugincy_add_to_cartincludes\add-to-cart.php:60
authwp_ajax_plugincy_find_variationincludes\add-to-cart.php:139
noprivwp_ajax_plugincy_find_variationincludes\add-to-cart.php:140
authwp_ajax_plugincy_get_fragmentsincludes\add-to-cart.php:180
noprivwp_ajax_plugincy_get_fragmentsincludes\add-to-cart.php:181
authwp_ajax_plugincy_bulk_add_to_cartincludes\add-to-cart.php:204
noprivwp_ajax_plugincy_bulk_add_to_cartincludes\add-to-cart.php:205
authwp_ajax_wcproducttab_get_preview_productsultimate-product-table-for-woocommerce.php:65

Shortcodes 1

[wcproducttab_table] ultimate-product-table-for-woocommerce.php:63
WordPress Hooks 9
actionload-toplevel_page_plugincy-tablesincludes\all_tables.php:401
actionadmin_enqueue_scriptsincludes\all_tables.php:402
actionadmin_initincludes\settings_page.php:17
actioninitultimate-product-table-for-woocommerce.php:58
actionadmin_menuultimate-product-table-for-woocommerce.php:59
actionadmin_enqueue_scriptsultimate-product-table-for-woocommerce.php:60
actionwp_enqueue_scriptsultimate-product-table-for-woocommerce.php:61
actionadmin_initultimate-product-table-for-woocommerce.php:62
actionadmin_noticesultimate-product-table-for-woocommerce.php:73
Maintenance & Trust

Ultimate Product Table for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedOct 16, 2025
PHP min version7.4
Downloads269

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Ultimate Product Table for WooCommerce Developer Profile

Plugincy

5 plugins · 940 total installs

100
trust score
Avg Security Score
100/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Ultimate Product Table for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/admin.css/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/admin.js/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/frontend.css/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/js/add-to-cart.js/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/js/frontend.js/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/select2.min.css/wp-content/plugins/ultimate-product-table-for-woocommerce/assets/select2.min.js
Script Paths
assets/admin.jsassets/select2.min.jsassets/js/frontend.jsassets/js/add-to-cart.js
Version Parameters
ultimate-product-table-for-woocommerce/assets/admin.css?ver=ultimate-product-table-for-woocommerce/assets/admin.js?ver=ultimate-product-table-for-woocommerce/assets/frontend.css?ver=ultimate-product-table-for-woocommerce/assets/js/add-to-cart.js?ver=ultimate-product-table-for-woocommerce/assets/js/frontend.js?ver=ultimate-product-table-for-woocommerce/assets/select2.min.css?ver=ultimate-product-table-for-woocommerce/assets/select2.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
wcproducttabwcproducttab-wrapper
Data Attributes
data-wcproducttab-id
JS Globals
wcproducttab_ajax PLUGINCY_ATC
Shortcode Output
[wcproducttab_table
FAQ

Frequently Asked Questions about Ultimate Product Table for WooCommerce