WCBoost – Products Compare Security & Risk Analysis

wordpress.org/plugins/wcboost-products-compare

Enhance your WooCommerce store with WCBoost - Products Compare, enabling customers to easily compare products and make informed decisions.

30K active installs v1.1.0 PHP 7.0+ WP 4.5+ Updated Dec 15, 2025
compareproductproduct-comparewoocommercewoocommerce-compare
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WCBoost – Products Compare Safe to Use in 2026?

Generally Safe

Score 100/100

WCBoost – Products Compare has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The plugin "wcboost-products-compare" v1.1.0 appears to have a strong security posture based on the provided static analysis. The absence of any recorded vulnerabilities in its history is a significant positive indicator. The code analysis reveals good practices like the exclusive use of prepared statements for SQL queries, robust use of nonce and capability checks for its entry points, and a high percentage of properly escaped output.

While the attack surface is small with only three shortcodes and no unprotected entry points, the lack of taint analysis data is a minor concern. However, given the overall positive indicators from code signals and historical vulnerability data, this absence is less likely to represent a significant risk. The plugin demonstrates a good understanding of WordPress security best practices.

In conclusion, the plugin exhibits a generally secure design with no immediate red flags. The strengths lie in its robust use of WordPress security functions and lack of historical vulnerabilities. The only potential area for improvement, or at least further scrutiny if possible, would be the completeness of taint analysis, but the current data suggests a low-risk plugin.

Key Concerns

  • High output escaping coverage
  • All SQL queries use prepared statements
  • Adequate nonce checks implemented
  • Adequate capability checks implemented
  • No critical or high severity taint flows
  • No known CVEs
  • No unprotected entry points
Vulnerabilities
None known

WCBoost – Products Compare Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WCBoost – Products Compare Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
17
95 escaped
Nonce Checks
2
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

85% escaped112 total outputs
Attack Surface

WCBoost – Products Compare Attack Surface

Entry Points3
Unprotected0

Shortcodes 3

[wcboost_compare] includes\shortcodes.php:23
[wcboost_compare_button] includes\shortcodes.php:24
[wcboost_compare_similars] includes\shortcodes.php:25
WordPress Hooks 48
actionswitch_themeincludes\admin\notices.php:27
actionwcboost_products_compare_installedincludes\admin\notices.php:28
actionadmin_initincludes\admin\notices.php:29
actionadmin_print_stylesincludes\admin\notices.php:32
filterwoocommerce_products_general_settingsincludes\admin\settings.php:21
filterwoocommerce_product_add_to_cart_urlincludes\analytics\tracker.php:49
filterwoocommerce_loop_add_to_cart_linkincludes\analytics\tracker.php:50
actionwcboost_products_compare_product_addedincludes\analytics\tracker.php:52
actionwcboost_products_compare_product_removedincludes\analytics\tracker.php:53
actionwoocommerce_add_to_cartincludes\analytics\tracker.php:54
actionwp_loadedincludes\compare-list.php:43
actionwcboost_products_compare_product_addedincludes\compare-list.php:65
actionwcboost_products_compare_product_removedincludes\compare-list.php:66
actionwcboost_products_compare_list_emptiedincludes\compare-list.php:67
actionwcboost_products_compare_product_addedincludes\compare-list.php:70
actionwcboost_products_compare_product_removedincludes\compare-list.php:71
actionwcboost_products_compare_list_emptiedincludes\compare-list.php:72
actionwpincludes\compare-list.php:73
actionshutdownincludes\compare-list.php:74
actioninitincludes\compatibility.php:41
filterwcboost_wishlist_page_id_option_excludeincludes\compatibility.php:49
actioncustomize_registerincludes\customizer.php:23
actionwp_loadedincludes\form-handler.php:21
actionwp_loadedincludes\form-handler.php:22
actionwp_loadedincludes\form-handler.php:23
actionwpincludes\frontend.php:45
actionwpincludes\frontend.php:46
filterwp_robotsincludes\frontend.php:47
actionwp_enqueue_scriptsincludes\frontend.php:48
filterbody_classincludes\frontend.php:55
actionwcboost_products_compare_before_contentincludes\frontend.php:57
actionwoocommerce_after_add_to_cart_formincludes\frontend.php:60
actionwoocommerce_after_shop_loop_itemincludes\frontend.php:61
actionwcboost_products_compare_contentincludes\frontend.php:64
actionwcboost_products_compare_field_contentincludes\frontend.php:65
actionwcboost_products_compare_after_contentincludes\frontend.php:68
actionwp_footerincludes\frontend.php:71
actionwcboost_products_compare_widget_buttonsincludes\frontend.php:74
actionwcboost_products_compare_widget_buttonsincludes\frontend.php:75
actionwp_footerincludes\frontend.php:79
actioninitincludes\install.php:23
filterplugin_row_metaincludes\install.php:24
actioninitincludes\plugin.php:155
actionwidgets_initincludes\plugin.php:157
filterwoocommerce_get_compare_page_idincludes\plugin.php:159
actionwp_loginincludes\plugin.php:161
actionbefore_woocommerce_initwcboost-products-compare.php:30
actionwoocommerce_loadedwcboost-products-compare.php:47
Maintenance & Trust

WCBoost – Products Compare Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 15, 2025
PHP min version7.0
Downloads244K

Community Trust

Rating100/100
Number of ratings1
Active installs30K
Developer Profile

WCBoost – Products Compare Developer Profile

WCBoost

3 plugins · 100K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WCBoost – Products Compare

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wcboost-products-compare/assets/css/compare.css/wp-content/plugins/wcboost-products-compare/assets/js/compare.js/wp-content/plugins/wcboost-products-compare/assets/js/compare.min.js/wp-content/plugins/wcboost-products-compare/assets/js/compare-fragments.js/wp-content/plugins/wcboost-products-compare/assets/js/compare-fragments.min.js
Script Paths
/assets/js/compare.js/assets/js/compare.min.js/assets/js/compare-fragments.js/assets/js/compare-fragments.min.js
Version Parameters
wcboost-products-compare/assets/css/compare.css?ver=wcboost-products-compare/assets/js/compare.js?ver=wcboost-products-compare/assets/js/compare-fragments.js?ver=

HTML / DOM Fingerprints

CSS Classes
wcboost-products-compare-button--singlewoocommerce-products-compare
Data Attributes
wcboost-products-compare
JS Globals
wcboost_products_compare_paramswcboost_products_compare_fragments_params
FAQ

Frequently Asked Questions about WCBoost – Products Compare