
Custom Product tabs for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wb-custom-product-tabs-for-woocommerceCreate unlimited WooCommerce tabs and assign them in bulk by category, tag, brand, or product. Also disable WooCommerce’s default product tabs.
Is Custom Product tabs for WooCommerce Safe to Use in 2026?
Generally Safe
Score 98/100Custom Product tabs for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "wb-custom-product-tabs-for-woocommerce" plugin v1.6.4 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping the vast majority of its output. The absence of file operations and a lack of critical or high severity taint flows are also encouraging signs. However, significant concerns remain regarding its attack surface and past vulnerability history.
The plugin exposes one AJAX handler without any authentication checks, creating a potential entry point for unauthenticated attackers. While there are no identified critical or high severity taint flows in the static analysis, this unprotected AJAX endpoint could be leveraged to trigger unintended actions or expose sensitive information if not handled with extreme care within the plugin's code. Furthermore, the plugin has a history of a high severity vulnerability related to deserialization of untrusted data, indicating a past weakness that could reappear or be exploited in different forms if not thoroughly addressed.
In conclusion, while the plugin employs some strong security fundamentals, the unprotected AJAX endpoint and its past high-severity vulnerability history present notable risks. The overall security is weakened by these factors, requiring careful monitoring and potentially further hardening of the exposed entry point. The lack of capability checks on the AJAX handler is a particularly glaring omission.
Key Concerns
- AJAX handler without auth checks
- High severity vulnerability history
- 0 capability checks
Custom Product tabs for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Custom Product Tabs For WooCommerce <= 1.2.4 - Authenticated (Shop Manager+) PHP Object Injection
Custom Product tabs for WooCommerce Release Timeline
Custom Product tabs for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Custom Product tabs for WooCommerce Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 32
Maintenance & Trust
Custom Product tabs for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Custom Product tabs for WooCommerce Alternatives
Product Tabs for WooCommerce
woocommerce-product-tabs
Discover the easy way to add extra tabs to your WooCommerce product pages.
Custom Product Tabs for WooCommerce & WordPress Tabs Builder – Smart Tabs
wp-expand-tabs-free
A customizable plugin to create and manage WooCommerce product tabs and WordPress tabs to organize content.
Dynamic Product Tabs Builder for WooCommerce
dynamic-product-tabs-builder-for-woocommerce
Create custom product tabs with custom content for clearer WooCommerce product pages - Defined sitewide or per product.
TG Product Tab Manager
product-tab-manager
This plugin allows you to manage your Woocommerce product page tabs. Tabs can be renamed, removed and re-ordered on the single product page.
Product Tabs Manager – Custom WooCommerce Product Tabs, Extra Tabs, Tab Editor & Tab Customizer
product-tabs-manager
Create unlimited custom WooCommerce product tabs, manage default tabs, exclude tabs by product or category, add specifications, FAQs & more – 100% …
Custom Product tabs for WooCommerce Developer Profile
3 plugins · 11K total installs
How We Detect Custom Product tabs for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wb-custom-product-tabs-for-woocommerce/css/wb-custom-product-tabs-for-woocommerce-admin.css/wp-content/plugins/wb-custom-product-tabs-for-woocommerce/js/wb-custom-product-tabs-for-woocommerce-admin.jsjs/wb-custom-product-tabs-for-woocommerce-admin.jswb-custom-product-tabs-for-woocommerce-admin.css?ver=wb-custom-product-tabs-for-woocommerce-admin.js?ver=HTML / DOM Fingerprints
wb-custom-product-tabs-for-woocommerce-admindata-slug="wb-custom-product-tabs-for-woocommerce"wb_custom_tabs_params