Messaging Alerts Integration for WooCommerce Security & Risk Analysis

wordpress.org/plugins/wabaapi-alerts-for-woocommerce

Enhance your WooCommerce store with real-time order alerts and customer engagement via messaging API integration from WabaAPI.com.

10 active installs v1.0.1 PHP 7.4+ WP 3.8+ Updated Dec 8, 2025
alertscustomer-communicationmessagingnotificationswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Messaging Alerts Integration for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Messaging Alerts Integration for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The plugin "wabaapi-alerts-for-woocommerce" v1.0.1 exhibits a generally positive security posture with several good practices evident in the static analysis. The absence of known CVEs and a clean vulnerability history are strong indicators of a well-maintained and secure plugin. The high percentage of SQL queries using prepared statements and the substantial amount of properly escaped output suggest a careful approach to preventing common web vulnerabilities like SQL injection and Cross-Site Scripting (XSS).

However, the taint analysis reveals a notable concern. While no critical severity flows were identified, there are four high-severity flows with unsanitized paths. This indicates potential pathways where user-supplied data might not be adequately cleaned before being used in sensitive operations, which could lead to vulnerabilities if exploited. The presence of external HTTP requests, although not inherently a vulnerability, always warrants careful review to ensure they are implemented securely and do not expose the site to risks from compromised external services.

In conclusion, the plugin benefits from a lack of historical vulnerabilities and good practices in SQL and output handling. Nevertheless, the identified high-severity unsanitized taint flows are a significant concern that requires immediate investigation and remediation. Addressing these specific taint issues is crucial to maintaining the plugin's otherwise strong security standing.

Key Concerns

  • High severity unsanitized taint flows
  • External HTTP requests
Vulnerabilities
None known

Messaging Alerts Integration for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Messaging Alerts Integration for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
8
23 prepared
Unescaped Output
53
495 escaped
Nonce Checks
13
Capability Checks
2
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

74% prepared31 total queries

Output Escaping

90% escaped548 total outputs
Data Flows
6 unsanitized

Data Flow Analysis

13 flows6 with unsanitized paths
wabaapi_wa_alerts_dlr_page (wabaapi_woocom.php:970)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Messaging Alerts Integration for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 24
actionregister_formcore\waabaapi_user.class.php:17
filterregistration_errorscore\waabaapi_user.class.php:61
actionuser_registercore\waabaapi_user.class.php:103
actionwoocommerce_register_postcore\waabaapi_user.class.php:156
actionwoocommerce_created_customercore\waabaapi_user.class.php:191
actionuser_new_formcore\waabaapi_user.class.php:235
actionshow_user_profilecore\waabaapi_user.class.php:279
actionedit_user_profilecore\waabaapi_user.class.php:280
actionwoocommerce_edit_account_formcore\waabaapi_user.class.php:316
actionwoocommerce_save_account_detailscore\waabaapi_user.class.php:353
actionprofile_updatecore\waabaapi_user.class.php:394
actionwoocommerce_customer_save_addresscore\waabaapi_user.class.php:435
actionpassword_resetcore\waabaapi_user.class.php:445
actionwoocommerce_register_form_startcore\waabaapi_user.class.php:498
actionwoocommerce_order_status_changedcore\woo_order.class.php:20
actioncomment_postcore\woo_order.class.php:215
actiontransition_comment_statuscore\woo_order.class.php:270
actionadmin_menuwabaapi_woocom.php:90
actionadmin_initwabaapi_woocom.php:91
actionadmin_enqueue_scriptswabaapi_woocom.php:92
action_wp_http_refererwabaapi_woocom.php:980
actionadmin_initwabaapi_woocom.php:1273
actionadmin_noticeswabaapi_woocom.php:1321
filterplugin_action_linkswabaapi_woocom.php:1342
Maintenance & Trust

Messaging Alerts Integration for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 8, 2025
PHP min version7.4
Downloads874

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Messaging Alerts Integration for WooCommerce Developer Profile

smsgatewaycenter

3 plugins · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Messaging Alerts Integration for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wabaapi-alerts-for-woocommerce/assets/css/wabaapi_alerts_style.css/wp-content/plugins/wabaapi-alerts-for-woocommerce/assets/css/bootstrap.min.css/wp-content/plugins/wabaapi-alerts-for-woocommerce/assets/js/jquery.twbsPagination.min.js
Script Paths
/wp-content/plugins/wabaapi-alerts-for-woocommerce/assets/js/jquery.twbsPagination.min.js
Version Parameters
wabaapi_alerts_style.css?v=bootstrap.min.css?v=jquery.twbsPagination.min.js?v=0.0001

HTML / DOM Fingerprints

CSS Classes
wabaapi_alerts_style
Data Attributes
wabaapi_userIdwabaapi_apikey
JS Globals
wabaapi_wa_alerts_option_name
FAQ

Frequently Asked Questions about Messaging Alerts Integration for WooCommerce