UpsellWP Side Cart for WooCommerce Security & Risk Analysis

wordpress.org/plugins/upsellwp-mini-cart

Boost conversions by adding a WooCommerce side cart & let customers reach checkout faster. Add upsells & cross-sells to boost AOV.

200 active installs v1.0.5 PHP 7.2+ WP 6.0+ Updated Dec 12, 2025
cartfloating-cartshopping-cartwoocommercewoocommerce-cart
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is UpsellWP Side Cart for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

UpsellWP Side Cart for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The "upsellwp-mini-cart" plugin, version 1.0.5, exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and a high percentage of properly escaped outputs. The absence of known vulnerabilities and a clean vulnerability history are also encouraging indicators. However, a significant concern arises from its attack surface. With three identified AJAX handlers, all of which lack authentication checks, there's a substantial risk of unauthorized access and manipulation of plugin functionality. The absence of capability checks further exacerbates this issue, meaning any authenticated user could potentially trigger these unprotected AJAX actions. While taint analysis and code signals for dangerous functions are clean, the unprotected AJAX endpoints represent a critical oversight in its security implementation.

Key Concerns

  • AJAX handlers without authentication checks
  • No capability checks found
Vulnerabilities
None known

UpsellWP Side Cart for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

UpsellWP Side Cart for WooCommerce Release Timeline

v1.0.5Current
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

UpsellWP Side Cart for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
138 escaped
Nonce Checks
2
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped140 total outputs
Attack Surface
3 unprotected

UpsellWP Side Cart for WooCommerce Attack Surface

Entry Points3
Unprotected3

AJAX Handlers 3

authwp_ajax_uwpmc_get_nonceapp\Route.php:50
authwp_ajax_uwpmc_ajaxapp\Route.php:69
noprivwp_ajax_uwpmc_ajaxapp\Route.php:70
WordPress Hooks 15
filteruwpmc_template_dataapp\Controllers\Ajax.php:333
filtermce_buttonsapp\Controllers\Page.php:61
filtermce_buttons_2app\Controllers\Page.php:74
actionadmin_noticesapp\Helpers\Plugin.php:67
actionwp_loadedapp\Route.php:44
actionadmin_enqueue_scriptsapp\Route.php:45
actionadmin_initapp\Route.php:46
actionadmin_menuapp\Route.php:47
actionwoocommerce_cart_emptiedapp\Route.php:59
actionwp_enqueue_scriptsapp\Route.php:60
actionwp_footerapp\Route.php:61
filtercuw_cart_upsell_offer_display_locations_on_mini_cartapp\Route.php:79
filtercuw_cache_cart_upsell_offers_dataapp\Route.php:82
actionplugins_loadedupsellwp-mini-cart.php:39
actionbefore_woocommerce_initupsellwp-mini-cart.php:65
Maintenance & Trust

UpsellWP Side Cart for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 12, 2025
PHP min version7.2
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs200
Developer Profile

UpsellWP Side Cart for WooCommerce Developer Profile

flycart

4 plugins · 108K total installs

74
trust score
Avg Security Score
93/100
Avg Patch Time
665 days
View full developer profile
Detection Fingerprints

How We Detect UpsellWP Side Cart for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/upsellwp-mini-cart/assets/css/dist/style.css/wp-content/plugins/upsellwp-mini-cart/assets/css/uwp-mini-cart.css/wp-content/plugins/upsellwp-mini-cart/assets/js/dist/main.bundle.js/wp-content/plugins/upsellwp-mini-cart/js/plugin-install.js/wp-content/plugins/upsellwp-mini-cart/assets/js/uwp-mini-cart.js
Script Paths
/wp-content/plugins/upsellwp-mini-cart/assets/js/dist/main.bundle.js/wp-content/plugins/upsellwp-mini-cart/js/plugin-install.js/wp-content/plugins/upsellwp-mini-cart/assets/js/uwp-mini-cart.js
Version Parameters
upsellwp-mini-cart/assets/css/dist/style.css?ver=upsellwp-mini-cart/assets/css/uwp-mini-cart.css?ver=upsellwp-mini-cart/assets/js/dist/main.bundle.js?ver=upsellwp-mini-cart/js/plugin-install.js?ver=upsellwp-mini-cart/assets/js/uwp-mini-cart.js?ver=

HTML / DOM Fingerprints

CSS Classes
uwpmc-mini-cart
Data Attributes
data-uwpmc-mini-cart
JS Globals
uwpmc_data
FAQ

Frequently Asked Questions about UpsellWP Side Cart for WooCommerce