
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Security & Risk Analysis
wordpress.org/plugins/woo-advanced-discountsA powerful WooCommerce dynamic pricing plugin for bulk discounts, free gifts, BOGOs, customer role or groups based deals and much more.
Is Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Safe to Use in 2026?
Generally Safe
Score 92/100Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'woo-advanced-discounts' plugin v2.32.3 exhibits a mixed security posture. While a significant portion of its SQL queries are properly prepared and output escaping is generally well-implemented, there are notable concerns regarding its attack surface. A substantial number of AJAX handlers lack authentication checks, presenting a direct vector for unauthorized actions if exploited. The presence of the `unserialize` function is a significant risk, as it can lead to Remote Code Execution if user-controlled data is passed to it without proper sanitization. The plugin's vulnerability history is notably clean, with no recorded CVEs. This suggests a diligent approach to security by the developers or a lack of past successful exploitation attempts. However, the clean history should not overshadow the identified code signals and attack surface weaknesses. The plugin has strengths in its adherence to prepared statements and output escaping, but these are significantly undermined by the unprotected entry points and the dangerous `unserialize` function.
Key Concerns
- Numerous unprotected AJAX handlers
- Use of unserialize function
- Limited nonce checks
- Limited capability checks
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Security Vulnerabilities
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Release Timeline
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Attack Surface
AJAX Handlers 9
Shortcodes 1
WordPress Hooks 51
Maintenance & Trust
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Maintenance & Trust
Maintenance Signals
Community Trust
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Alternatives
Dynamic Pricing With Discount Rules for WooCommerce
aco-woo-dynamic-pricing
The Dynamic Pricing With Discount Rules plugin enables bulk discounts for WooCommerce products. Its simple design allows easy setup in minutes.
Scheduled Sales & Automatic Discounts for WooCommerce – Smart Cycle Discounts
smart-cycle-discounts
WooCommerce discount plugin for automated campaigns: dynamic pricing, BOGO, product bundles, tiered pricing, scheduled sales, and conflict safeguards.
Finale Lite – Sales Countdown Timer & Discount for WooCommerce
finale-woocommerce-sales-countdown-timer-discount
Finale lets you create scheduled one time or recurring campaigns. It induces urgency with visual elements such as Countdown Timer and Counter Bar to m …
ELEX WooCommerce Product Price Custom Text (Before & After Text) and Discount
elex-product-price-custom-text-before-after-text-and-discount-for-woocommerce
Add a text before and after the product price both globally and individually. Also, apply a quick discount for your products.
Dynamic Pricing and Discount Rules
discount-and-dynamic-pricing
Dynamic Pricing Plugin lets you create special discounts for your customers based on product and cart details.
Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin Developer Profile
3 plugins · 10K total installs
How We Detect Conditional Discounts for WooCommerce – A simple yet complete woocommerce dynamic pricing plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-advanced-discounts/admin/css/wad-admin.css/wp-content/plugins/woo-advanced-discounts/admin/css/wad-select2.css/wp-content/plugins/woo-advanced-discounts/admin/css/flexiblegs.css/wp-content/plugins/woo-advanced-discounts/admin/css/UI.css/wp-content/plugins/woo-advanced-discounts/admin/js/o-datepicker/css/datepicker.css/wp-content/plugins/woo-advanced-discounts/admin/js/o-datetimepicker/jquery.datetimepicker.css/wp-content/plugins/woo-advanced-discounts/admin/js/wad-admin.js/wp-content/plugins/woo-advanced-discounts/admin/js/wad-select2.js+4 morewoo-advanced-discounts/admin/css/wad-admin.css?ver=woo-advanced-discounts/admin/css/wad-select2.css?ver=woo-advanced-discounts/admin/css/flexiblegs.css?ver=woo-advanced-discounts/admin/css/UI.css?ver=woo-advanced-discounts/admin/js/o-datepicker/css/datepicker.css?ver=woo-advanced-discounts/admin/js/o-datetimepicker/jquery.datetimepicker.css?ver=woo-advanced-discounts/admin/js/wad-admin.js?ver=woo-advanced-discounts/admin/js/wad-select2.js?ver=woo-advanced-discounts/admin/js/o-admin.js?ver=woo-advanced-discounts/admin/js/SpryAssets/SpryTabbedPanels.js?ver=woo-advanced-discounts/admin/js/jquery.serializejson.min.js?ver=woo-advanced-discounts/admin/js/o-datetimepicker/jquery.datetimepicker.full.min.js?ver=HTML / DOM Fingerprints
wad-select2o_max_input_varso_max_input_msg