Link Products to External websites for WooCommerce Security & Risk Analysis

wordpress.org/plugins/wc-products-to-external-websites

One WooCommerce installation to many external websites. Display stores on as many websites as required from single WooCommerce install

0 active installs v1.0.0 PHP 7.0+ WP 5.7+ Updated Aug 4, 2022
iframewoocommercewordpress
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Link Products to External websites for WooCommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Link Products to External websites for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "wc-products-to-external-websites" plugin, in version 1.0.0, exhibits a strong security posture based on the provided static analysis. The complete absence of detected entry points like AJAX handlers, REST API routes, shortcodes, and cron events, coupled with the fact that all identified entry points are protected, significantly limits the potential attack surface. Furthermore, the code demonstrates good security practices by avoiding dangerous functions, performing all SQL queries using prepared statements, and having a high percentage of output correctly escaped. The inclusion of the Select2 library is noted, but without information on its specific version or potential vulnerabilities, its impact is considered neutral in this assessment. The plugin also boasts a clean vulnerability history with no recorded CVEs, indicating a lack of known exploitable issues.

While the static analysis reveals a very secure codebase with no critical or high severity taint flows and a robust approach to handling data and user input, the absence of capability checks is a point of concern. Although there are no directly exploitable vulnerabilities identified in this analysis, a lack of capability checks means that if new entry points were to be introduced or discovered in the future, they might not be adequately secured against unauthorized access by less privileged users. The presence of nonces is a positive indicator of input validation for specific actions, but this doesn't fully compensate for the lack of broader role-based access control checks.

In conclusion, the plugin appears to be very well-developed from a security standpoint, with no immediate critical risks identified. The developers have prioritized secure coding practices such as prepared statements and output escaping. The absence of past vulnerabilities further reinforces this positive impression. The primary weakness lies in the lack of capability checks, which, while not an immediate vulnerability in the current version, represents a potential risk if the plugin's functionality evolves or if unforeseen access vectors emerge. Overall, the plugin demonstrates a high level of security awareness.

Key Concerns

  • No capability checks found
Vulnerabilities
None known

Link Products to External websites for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Link Products to External websites for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
63 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

90% escaped70 total outputs
Attack Surface

Link Products to External websites for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionplugins_loadedclass-momo-wcexternal.php:30
actioninitclass-momo-wcexternal.php:41
actionadmin_noticesclass-momo-wcexternal.php:50
actionadmin_menuincludes\admin\class-momo-wcext-admin-init.php:12
actionadmin_enqueue_scriptsincludes\admin\class-momo-wcext-admin-init.php:13
actionadmin_initincludes\admin\class-momo-wcext-admin-init.php:15
actionrest_api_initincludes\class-momo-wcext-api.php:14
Maintenance & Trust

Link Products to External websites for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedAug 4, 2022
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Link Products to External websites for WooCommerce Developer Profile

Ashish

7 plugins · 700 total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Link Products to External websites for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wc-products-to-external-websites/assets/css/select2.min.css/wp-content/plugins/wc-products-to-external-websites/assets/css/momo_wcext_admin.css/wp-content/plugins/wc-products-to-external-websites/assets/boxicons/css/boxicons.min.css/wp-content/plugins/wc-products-to-external-websites/assets/js/select2.min.js/wp-content/plugins/wc-products-to-external-websites/assets/js/momo_wcext_admin.js/wp-content/plugins/wc-products-to-external-websites/assets/js/momowcext.js
Script Paths
/wp-content/plugins/wc-products-to-external-websites/assets/js/select2.min.js/wp-content/plugins/wc-products-to-external-websites/assets/js/momo_wcext_admin.js/wp-content/plugins/wc-products-to-external-websites/assets/js/momowcext.js
Version Parameters
wc-products-to-external-websites/assets/css/select2.min.css?ver=wc-products-to-external-websites/assets/css/momo_wcext_admin.css?ver=wc-products-to-external-websites/assets/boxicons/css/boxicons.min.css?ver=wc-products-to-external-websites/assets/js/select2.min.js?ver=wc-products-to-external-websites/assets/js/momo_wcext_admin.js?ver=wc-products-to-external-websites/assets/js/momowcext.js?ver=

HTML / DOM Fingerprints

CSS Classes
momowcext-settings-wrap
Data Attributes
data-new_window_option
JS Globals
momowcext_adminmomowcext
FAQ

Frequently Asked Questions about Link Products to External websites for WooCommerce