
Coreem – Coupon Reminder for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woo-coupon-reminderThe plugin's user-friendly design helps manage coupons, sends reminder emails, and encourages customers to use coupons before expiration.
Is Coreem – Coupon Reminder for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Coreem – Coupon Reminder for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "woo-coupon-reminder" v2.1.6 plugin presents a mixed security posture. While it demonstrates strong practices in output escaping (98%) and a lack of known CVEs or dangerous functions, significant concerns arise from its attack surface. All 8 identified AJAX handlers lack authentication checks, creating a substantial entry point for potential unauthorized actions. Furthermore, taint analysis revealed 2 flows with unsanitized paths classified as high severity, indicating a risk of data injection or manipulation if these paths are triggered by malicious input. The absence of file operations and external HTTP requests is positive, but the high number of unprotected AJAX endpoints and the identified high-severity taint flows outweigh these strengths.
Despite the plugin having no recorded vulnerability history and a good percentage of SQL queries using prepared statements, the current static analysis reveals specific weaknesses that require attention. The lack of authorization on AJAX actions is a critical oversight that could be exploited to perform unintended operations within the WordPress site. The high-severity taint flows suggest potential vulnerabilities that could lead to security breaches, even without publicly known CVEs. Therefore, while the plugin has some good security practices, the unprotected AJAX endpoints and critical taint flows represent notable security risks that should be addressed to improve its overall security posture.
Key Concerns
- Unprotected AJAX handlers
- High severity taint flows
Coreem – Coupon Reminder for WooCommerce Security Vulnerabilities
Coreem – Coupon Reminder for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Coreem – Coupon Reminder for WooCommerce Attack Surface
AJAX Handlers 8
WordPress Hooks 48
Scheduled Events 2
Maintenance & Trust
Coreem – Coupon Reminder for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Coreem – Coupon Reminder for WooCommerce Alternatives
Discount Rules for WooCommerce
woo-discount-rules
The discount plugin for WooCommerce helps you create bulk discount, quantity discount, storewide sale, dynamic pricing discount offers easily.
Order Export & Order Import for WooCommerce
order-import-export-for-woocommerce
The best order export import plugin for WooCommerce. Easily import and export WooCommerce orders and WooCommerce coupons using CSV.
Smart Coupons For WooCommerce Coupons
wt-smart-coupons-for-woocommerce
Best WooCommerce coupons plugin to create advanced coupons and discount codes with auto-apply, BOGO, free shipping, giveaways, and discount rules.
Advanced Coupons for WooCommerce Coupons & Store Credit
advanced-coupons-for-woocommerce-free
Enhance WooCommerce coupons with new coupon types, BOGO coupons, store credit, discount rules, url coupons, gift cards, loyalty program + more!
Advanced Dynamic Pricing and Discount Rules for WooCommerce
advanced-dynamic-pricing-for-woocommerce
The discount plugin for WooCommerce supports any dynamic pricing discount: bulk discount, role discount, storewide, bogo, gifts, cart discount
Coreem – Coupon Reminder for WooCommerce Developer Profile
58 plugins · 167K total installs
How We Detect Coreem – Coupon Reminder for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-coupon-reminder/assets/css/button.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/checkbox.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/dropdown.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/form.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/grid.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/icon.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/modal.min.css/wp-content/plugins/woo-coupon-reminder/assets/css/table.min.css+7 more/wp-content/plugins/woo-coupon-reminder/assets/js/admin-coreem.js/wp-content/plugins/woo-coupon-reminder/assets/js/admin-notice.js/wp-content/plugins/woo-coupon-reminder/assets/js/coupon-custom.js/wp-content/plugins/woo-coupon-reminder/assets/js/email-template.js/wp-content/plugins/woo-coupon-reminder/assets/js/modal.js/wp-content/plugins/woo-coupon-reminder/assets/js/notice.js+1 morewoo-coupon-reminder/assets/css/button.min.css?ver=woo-coupon-reminder/assets/css/checkbox.min.css?ver=woo-coupon-reminder/assets/css/dropdown.min.css?ver=woo-coupon-reminder/assets/css/form.min.css?ver=woo-coupon-reminder/assets/css/grid.min.css?ver=woo-coupon-reminder/assets/css/icon.min.css?ver=woo-coupon-reminder/assets/css/modal.min.css?ver=woo-coupon-reminder/assets/css/table.min.css?ver=woo-coupon-reminder/assets/js/admin-coreem.js?ver=woo-coupon-reminder/assets/js/admin-notice.js?ver=woo-coupon-reminder/assets/js/coupon-custom.js?ver=woo-coupon-reminder/assets/js/email-template.js?ver=woo-coupon-reminder/assets/js/modal.js?ver=woo-coupon-reminder/assets/js/notice.js?ver=woo-coupon-reminder/assets/js/woo-coupon-reminder.js?ver=HTML / DOM Fingerprints
viwcr_modal_contentviwcr_modal_headerviwcr_modal_bodyviwcr_modal_footerviwcr_notice_dismissviwcr_coupon_custom_wrapper<!-- Add class to coupon post type to apply coupon-custom style -->data-nonce-dismiss-noticewoo_coupon_reminder_admin_ajax_objectviwcr_admin_ajax_object