
WC SMS Notification Security & Risk Analysis
wordpress.org/plugins/wc-sms-notificationOrder SMS Notofication for WooCommerce.
Is WC SMS Notification Safe to Use in 2026?
Generally Safe
Score 85/100WC SMS Notification has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wc-sms-notification plugin v1.0.0 exhibits a generally good security posture with notable strengths in its adherence to secure coding practices. The absence of dangerous functions, 100% use of prepared statements for SQL queries, and complete output escaping are significant positive indicators. Furthermore, the plugin has no recorded vulnerability history (CVEs), which suggests a commitment to maintaining a secure codebase. However, a critical concern arises from the presence of one unprotected AJAX handler. This creates a direct entry point into the plugin's functionality that is not secured by authentication or capability checks, potentially allowing unauthorized users to trigger sensitive actions. The plugin also makes four external HTTP requests, which, while not inherently a vulnerability, can introduce risks if the target endpoints are compromised or if the requests themselves are not handled securely.
Key Concerns
- Unprotected AJAX handler detected
- External HTTP requests present
WC SMS Notification Security Vulnerabilities
WC SMS Notification Release Timeline
WC SMS Notification Code Analysis
Output Escaping
Data Flow Analysis
WC SMS Notification Attack Surface
AJAX Handlers 2
WordPress Hooks 19
Maintenance & Trust
WC SMS Notification Maintenance & Trust
Maintenance Signals
Community Trust
WC SMS Notification Alternatives
WSMS (formerly WP SMS) – SMS & MMS Notifications with OTP and 2FA for WooCommerce
wp-sms
Send SMS/MMS notifications, OTP & 2FA messages, and WooCommerce updates with support for multiple gateways and plugin integrations.
SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery
sms-alert
Send WooCommerce SMS notifications, OTP verification, abandoned cart recovery alerts, and real-time order updates to customers and admins.
افزونه پیامک حرفه ای فراز اس ام اس
farazsms
شما می توانید با استفاده از افزونه فراز اس ام اس، سایت خود را با ابزاری خودکار برای ارسال پیامک و ذخیره شماره در دفترچه تلفن، تقویت کنید.
NotifSMS – SMS Notifications OTP & 2FA for WordPress & WooCommerce
wp-twilio-core
Send SMS, OTP & 2FA notifications from WordPress via Twilio. Includes automated alerts, bulk messaging, and integrations with popular plugins.
Netgsm
netgsm
Netgsm wordpress eklentisi ile kullanıcılarınıza sms uzaklığında kalın.
WC SMS Notification Developer Profile
9 plugins · 9K total installs
How We Detect WC SMS Notification
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wc-sms-notification/assets/css/style.css/wp-content/plugins/wc-sms-notification/assets/js/admin.js/wp-content/plugins/wc-sms-notification/assets/js/frontend.js/wp-content/plugins/wc-sms-notification/assets/js/woocommerce.js/wp-content/plugins/wc-sms-notification/assets/js/admin.js/wp-content/plugins/wc-sms-notification/assets/js/frontend.js/wp-content/plugins/wc-sms-notification/assets/js/woocommerce.jswc-sms-notification/assets/css/style.css?ver=wc-sms-notification/assets/js/admin.js?ver=wc-sms-notification/assets/js/frontend.js?ver=wc-sms-notification/assets/js/woocommerce.js?ver=HTML / DOM Fingerprints
sdevs-sms-adminsdevs-sms-setup-pagesdevs-sms-woocommerce-pagesdevs-sms-template-pagedata-ajax-urlsdevs_sms_admin_paramssdevs_sms_frontend_paramssdevs_sms_woocommerce_params/wp-json/sdevs-sms/v1/settings/wp-json/sdevs-sms/v1/get_setting/wp-json/sdevs-sms/v1/add_settings