Easy direct buy for woocommerce Security & Risk Analysis

wordpress.org/plugins/woo-direct-buy

This plugin allow direct buy to woocommerce. NO Shopping Cart. Just one product per purchase.

10 active installs v1.0 PHP 7.0+ WP 4.8.11+ Updated May 25, 2021
directbuydirectcheckoutmarketplacewoocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy direct buy for woocommerce Safe to Use in 2026?

Generally Safe

Score 85/100

Easy direct buy for woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The "woo-direct-buy" v1.0 plugin exhibits a generally positive security posture based on the provided static analysis. The plugin has a very small attack surface with zero identified entry points, which is a strong indicator of good security design. Furthermore, the absence of dangerous functions, file operations, external HTTP requests, and a lack of known vulnerabilities in its history are all favorable signs. The plugin also utilizes prepared statements for all SQL queries, which is a crucial best practice for preventing SQL injection. However, there are some areas of concern. Notably, only 50% of the identified output operations are properly escaped, which could lead to Cross-Site Scripting (XSS) vulnerabilities if unsanitized data is outputted. The complete lack of nonce and capability checks, while correlating with the zero attack surface, means that if any entry points were ever introduced or discovered, they would be entirely unprotected. In conclusion, while the plugin appears to have a robust foundation with no known vulnerabilities and secure SQL handling, the unescaped output and complete absence of authorization checks on potential, albeit currently non-existent, entry points represent potential weaknesses that could be exploited if the attack surface were to expand or be bypassed.

Key Concerns

  • 50% of output not properly escaped
  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Easy direct buy for woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Easy direct buy for woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped4 total outputs
Attack Surface

Easy direct buy for woocommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
filterwoocommerce_add_to_cart_validationwoo_direct_buy.php:14
filterwoocommerce_add_to_cart_redirectwoo_direct_buy.php:38
filterwoocommerce_product_single_add_to_cart_textwoo_direct_buy.php:41
filterwoocommerce_product_add_to_cart_textwoo_direct_buy.php:42
actionadmin_initwoo_direct_buy.php:55
actionadmin_menuwoo_direct_buy.php:60
Maintenance & Trust

Easy direct buy for woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedMay 25, 2021
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Easy direct buy for woocommerce Developer Profile

Jhainey Milevis

2 plugins · 2K total installs

81
trust score
Avg Security Score
82/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy direct buy for woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

HTML Comments
<!-- Step 1. --><!-- Step 2 (from text above). -->
Data Attributes
name="edbfw_button_text"placeholder="ej: Comprar ahora"value="<?php echo esc_attr(get_option('edbfw_button_text')); ?>"
FAQ

Frequently Asked Questions about Easy direct buy for woocommerce