
Wholesale Security & Risk Analysis
wordpress.org/plugins/wholesaleChanges the price of the product in the shopping cart according to its quantity
Is Wholesale Safe to Use in 2026?
Generally Safe
Score 85/100Wholesale has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the static analysis and vulnerability history provided, the "wholesale" v1.0.0.4 plugin exhibits a strong security posture. The absence of any identified dangerous functions, raw SQL queries, file operations, or external HTTP requests is commendable. Furthermore, the plugin demonstrates excellent practices by properly escaping all identified output and exclusively using prepared statements for any SQL interactions, indicating a robust defense against common web vulnerabilities like XSS and SQL injection.
The taint analysis revealing zero flows with unsanitized paths further reinforces this positive assessment. The lack of any recorded CVEs or historical vulnerabilities suggests either a history of diligent security maintenance or a lack of past discovery, which is generally a good sign for a plugin's current security. The minimal attack surface reported, with zero unprotected entry points, is also a significant strength.
However, the complete absence of nonces and capability checks across all entry points is a notable concern. While the current analysis shows no direct vulnerabilities stemming from this, it represents a significant gap in security best practices. This could potentially leave the plugin vulnerable to CSRF attacks or unauthorized actions if new entry points are introduced in future versions or if the existing ones are implicitly trusted without proper authorization checks. Despite this one significant weakness, the plugin's current state, based on the provided data, appears to be very secure.
Key Concerns
- Missing nonce checks
- Missing capability checks
Wholesale Security Vulnerabilities
Wholesale Release Timeline
Wholesale Code Analysis
Output Escaping
Wholesale Attack Surface
WordPress Hooks 6
Maintenance & Trust
Wholesale Maintenance & Trust
Maintenance Signals
Community Trust
Wholesale Alternatives
WC Continue Shopping Options
wc-continue-shopping-options
Most of the time as a Shop owner we always want to direct the customer at right place whenever customer is at Cart page to show related products or pr …
Wishlist with hearts
wishlist-with-hearts
Click on heart(icon)/button to add/delete the product in wishlist in a Woocommerce store
ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution
shopengine
WooCommerce builder for Elementor and Gutenberg. It offers product templates, product sliders, shopping cart, quick view, Woo wishlist, product filter …
Product Feed PRO for WooCommerce by AdTribes – Product Feeds for WooCommerce
woo-product-feed-pro
Most popular WooCommerce product feed plugin supporting Google shopping feed, meta/facebook feed, bing product feed & more.
Menu Cart for WooCommerce
woocommerce-menu-bar-cart
Automatically displays a shopping cart in your menu bar. Works with WooCommerce and Easy Digital Downloads (EDD)
Wholesale Developer Profile
5 plugins · 70 total installs
How We Detect Wholesale
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
options_groupid="mjwcws_qty"id="mjwcws_price_type"id="mjwcws_price"id="mjwcws_sale_price_type"id="mjwcws_sale_price"<h3>Wholesale</h3>