
WLU Custom Order Status for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wlu-custom-order-status-workflowCreate custom WooCommerce order statuses, inject beautiful status colors, and organize your store's fulfillment process.
Is WLU Custom Order Status for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100WLU Custom Order Status for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "wlu-custom-order-status-workflow" v1.0.10 exhibits a generally good security posture regarding its core code practices. All identified SQL queries use prepared statements, and all output is properly escaped, indicating a strong understanding of preventing common vulnerabilities like SQL injection and cross-site scripting. The absence of dangerous functions, file operations, and external HTTP requests further strengthens its security profile. However, a significant concern arises from the presence of a single REST API route that lacks permission callbacks. This unprotected entry point represents a potential avenue for unauthorized access or manipulation of plugin functionalities, especially if sensitive data or actions are exposed through this route. The plugin's vulnerability history is clear, with no known CVEs recorded, which suggests a history of secure development. Despite this positive history, the single unprotected REST API endpoint remains a critical weakness that needs immediate attention.
Key Concerns
- Unprotected REST API route
- No nonce checks on entry points
WLU Custom Order Status for WooCommerce Security Vulnerabilities
WLU Custom Order Status for WooCommerce Release Timeline
WLU Custom Order Status for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
WLU Custom Order Status for WooCommerce Attack Surface
REST API Routes 1
WordPress Hooks 12
Maintenance & Trust
WLU Custom Order Status for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
WLU Custom Order Status for WooCommerce Alternatives
Advanced Order Status For WooCommerce – Custom Status Management & Workflow Automation
advanced-order-status-for-woocommerce
Create and manage custom WooCommerce order statuses with icons, colors, and bulk actions. Streamline your fulfillment workflow.
RIACO Custom Order Status for WooCommerce
riaco-custom-order-status-for-woocommerce
Create and manage custom WooCommerce order statuses with colors and admin integration.
Additional Custom Order Status for WooCommerce
order-status-for-woocommerce
Manage order statuses in WooCommerce. Beautifully.
Advanced Custom Order Status for WooCommerce
advanced-custom-order-status-for-woocommerce
Easily create, edit, and delete custom order status in WooCommerce. Add icon, color and action to enhance the visual representation of order statuses.
SDP Custom Order Status for WooCommerce
sdp-custom-order-status-for-woocommerce
Create unlimited WooCommerce custom order statuses, send automated email notifications to customers and admins, and manage your order workflow easily
WLU Custom Order Status for WooCommerce Developer Profile
1 plugin · 0 total installs
How We Detect WLU Custom Order Status for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wlu-custom-order-status-workflow/dist/main.js/wp-content/plugins/wlu-custom-order-status-workflow/dist/main.css/wp-content/plugins/wlu-custom-order-status-workflow/dist/main.jswlu-custom-order-status-workflow/dist/main.js?ver=wlu-custom-order-status-workflow/dist/main.css?ver=HTML / DOM Fingerprints
status-weblevelup-status-app<!-- Only run the database installer if WooCommerce is actually active --><!-- If WooCommerce isn't found, do nothing (and show a beautiful red notice) --><!-- WooCommerce is present. Launch! --><!-- FIXED: Bulletproof path math to get the exact plugin root URL and Path -->+13 moredata-weblevelup-status-settingsdata-weblevelup-status-status-color-injectordata-weblevelup-status-customer-status-displayWEBLEVELUP_STATUS/weblevelup-status/v1/