
3D Product Viewer & WebAR for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wc-product-3d-viewerThe Viraview plugin allows your Woocommerce powered webshop to display your products in 3D & WebAR for PC, Android and Apple.
Is 3D Product Viewer & WebAR for WooCommerce Safe to Use in 2026?
Generally Safe
Score 85/1003D Product Viewer & WebAR for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wc-product-3d-viewer plugin v1.0.5 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and has no known historical vulnerabilities. The attack surface is minimal, with only one shortcode and no unprotected entry points. However, the static analysis reveals significant concerns. The presence of the `unserialize` function is a critical risk, especially when not adequately protected by nonce checks or capability checks, as it can lead to remote code execution if crafted malicious data is passed. The taint analysis indicating unsanitized paths, although not classified as critical or high, suggests a potential for data leakage or manipulation if these paths are accessible and exploitable. The lack of nonce and capability checks across all identified entry points is a serious oversight, leaving the plugin vulnerable to cross-site request forgery and privilege escalation attacks. The 70% proper output escaping is also concerning, as the remaining 30% of unescaped output could be exploited for cross-site scripting vulnerabilities.
Key Concerns
- Dangerous function 'unserialize' used
- Taint analysis shows unsanitized paths
- No nonce checks found
- No capability checks found
- 30% of output not properly escaped
3D Product Viewer & WebAR for WooCommerce Security Vulnerabilities
3D Product Viewer & WebAR for WooCommerce Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
3D Product Viewer & WebAR for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 11
Maintenance & Trust
3D Product Viewer & WebAR for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
3D Product Viewer & WebAR for WooCommerce Alternatives
rooom 3D Product Viewer
rooom-3d-product-viewer
The rooom extension is a powerful tool that allows you to integrate the rooom 3D Product Viewer quickly & easily into your product pages.
Kento 3D Model Viewer
kento-3d-model-viewer
Display 3D model on wordPress page, post, or custom page, 3D model rotate, zooming enabled.
3D Viewer Online
3dvieweronline-wp
An easy, realistic and customizable 3D Viewer to embed 3D models of your products/designs into your Wordpress/WooCommerce website (responsive layout)
3D Viewer – glb/gltf Viewer by WPSE
advanced-3d-model-viewer
Embed and interact with 3D models in your WordPress content using a block, shortcode, or custom post type.
3D Viewer – Display Interactive 3D Models
3d-viewer
3D Viewer lets you embed interactive 3D models and 360 product views on WordPress sites with support for GLB, GLTF, OBJ, STL, FBX, DAE, and BIM.
3D Product Viewer & WebAR for WooCommerce Developer Profile
2 plugins · 10 total installs
How We Detect 3D Product Viewer & WebAR for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wc-product-3d-viewer/images/icon.png/wp-content/plugins/wc-product-3d-viewer/images/logo-virakle.pngjs/nickx_live.phpHTML / DOM Fingerprints
flex-containerdata-product_gallery_shortcode<span id="product_gallery_shortcode">