
Checkout Field Editor for WooCommerce – Checkout Page Manager Security & Risk Analysis
wordpress.org/plugins/woo-checkout-regsiter-field-editorCheckout Field Editor for WooCommerce is the leading plugin for customizing, editing, removing, and managing your WooCommerce checkout fields.
Is Checkout Field Editor for WooCommerce – Checkout Page Manager Safe to Use in 2026?
Generally Safe
Score 99/100Checkout Field Editor for WooCommerce – Checkout Page Manager has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin exhibits a mixed security posture. While it demonstrates good practices in SQL query handling and leverages nonces, significant concerns arise from its attack surface and output escaping. The presence of two AJAX handlers without authentication checks represents a direct risk of unauthorized actions if these handlers can be triggered by unauthenticated users. Furthermore, a substantial portion of output is not properly escaped, creating a potential for Cross-Site Scripting (XSS) vulnerabilities. The plugin's vulnerability history shows a past medium severity CVE, which was Cross-Site Request Forgery (CSRF) in nature. Although currently unpatched vulnerabilities are zero, the past occurrence of CSRF, coupled with the unprotected AJAX endpoints, suggests a recurring pattern of potential access control and input validation weaknesses. Overall, while the use of prepared statements for SQL is a strong positive, the unprotected entry points and unescaped output necessitate careful attention to mitigate immediate risks.
Key Concerns
- Unprotected AJAX handlers
- Low percentage of properly escaped output
- Past medium severity CVE (CSRF)
- Flows with unsanitized paths
Checkout Field Editor for WooCommerce – Checkout Page Manager Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WooCommerce Checkout Field Editor (Checkout Manager) <= 2.1.8 - Cross-Site Request Forgery
Checkout Field Editor for WooCommerce – Checkout Page Manager Code Analysis
Output Escaping
Data Flow Analysis
Checkout Field Editor for WooCommerce – Checkout Page Manager Attack Surface
AJAX Handlers 3
WordPress Hooks 61
Maintenance & Trust
Checkout Field Editor for WooCommerce – Checkout Page Manager Maintenance & Trust
Maintenance Signals
Community Trust
Checkout Field Editor for WooCommerce – Checkout Page Manager Alternatives
Checkout Field Editor and Manager for WooCommerce
extra-checkout-fields-for-woocommerce
A simple WooCommerce Checkout Field Editor and Manager plugin to edit WooCommerce checkout fields, add custom checkout fields and more.
Custom WooCommerce Checkout Fields Editor
add-fields-to-checkout-page-woocommerce
Custom WooCommerce Checkout Fields Editor
FEWC – Extra Checkout Fields For WooCommerce
fewc-extra-checkout-fields-for-woocommerce
Easily customize your checkout page: add custom fields, enable/disable fields, rearrange their positions, and preview changes in the WP Customizer
Checkout Manager for Woocommerce
checkout-manager
Checkout Manager - The most advanced and powerful customization for your checkout page.
Checkout Field Builder (Checkout Field Editor & Manager) for WooCommerce
checkout-field-builder-checkout-manager-for-woocommerce
Checkout Field Builder - The best WooCommerce checkout filed editor & manager plugin to customize checkout fields on your WooCommerce checkout page.
Checkout Field Editor for WooCommerce – Checkout Page Manager Developer Profile
2 plugins · 2K total installs
How We Detect Checkout Field Editor for WooCommerce – Checkout Page Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-checkout-regsiter-field-editor/assets/css/jwcfe-newstyle.css/wp-content/plugins/woo-checkout-regsiter-field-editor/assets/js/polyfill.js/wp-content/plugins/woo-checkout-regsiter-field-editor/assets/js/jwcfe-admin-pro.js/wp-content/plugins/woo-checkout-regsiter-field-editor/assets/js/polyfill.js/wp-content/plugins/woo-checkout-regsiter-field-editor/assets/js/jwcfe-admin-pro.jswoo-checkout-regsiter-field-editor/assets/css/jwcfe-newstyle.css?ver=woo-checkout-regsiter-field-editor/assets/js/polyfill.js?ver=woo-checkout-regsiter-field-editor/assets/js/jwcfe-admin-pro.js?ver=HTML / DOM Fingerprints
WcfeAdmin