
Order Export For WooCommerce To Constant Contact Security & Risk Analysis
wordpress.org/plugins/woo-order-export-constant-contactThis plugin export users data from woocommerce order and merge it into the constant contact account.
Is Order Export For WooCommerce To Constant Contact Safe to Use in 2026?
Generally Safe
Score 100/100Order Export For WooCommerce To Constant Contact has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "woo-order-export-constant-contact" plugin v1.2.6 exhibits a generally strong security posture with good coding practices observed. The analysis shows no critical or high-severity taint flows, all SQL queries utilize prepared statements, and all identified output operations are properly escaped. Furthermore, the plugin has no recorded history of vulnerabilities, suggesting a proactive approach to security from the developers. The absence of file operations and reliance on secure coding standards are positive indicators.
However, a significant concern arises from the presence of a single AJAX handler that lacks authentication checks. This creates a direct entry point for potential unauthorized actions if not properly secured by WordPress's global security mechanisms. While there are no known CVEs or past vulnerabilities, the lack of specific capability checks or nonce verification on this AJAX endpoint represents a potential weakness. The plugin's limited attack surface is a mitigating factor, but the unprotected AJAX handler is the primary area requiring attention.
In conclusion, the plugin demonstrates sound development practices by avoiding common vulnerabilities like raw SQL and unescaped output. The clean vulnerability history further bolsters confidence. The main weakness lies in the unprotected AJAX endpoint, which, despite the small attack surface, could be exploited. Users should ensure that their WordPress installation has robust security measures in place to protect against unauthorized access to these types of endpoints.
Key Concerns
- AJAX handler without authentication checks
Order Export For WooCommerce To Constant Contact Security Vulnerabilities
Order Export For WooCommerce To Constant Contact Code Analysis
Output Escaping
Order Export For WooCommerce To Constant Contact Attack Surface
AJAX Handlers 1
WordPress Hooks 13
Maintenance & Trust
Order Export For WooCommerce To Constant Contact Maintenance & Trust
Maintenance Signals
Community Trust
Order Export For WooCommerce To Constant Contact Alternatives
No alternatives data available yet.
Order Export For WooCommerce To Constant Contact Developer Profile
6 plugins · 260 total installs
How We Detect Order Export For WooCommerce To Constant Contact
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woo-order-export-constant-contact/css/admin-style.css/wp-content/plugins/woo-order-export-constant-contact/js/wps-cc-woo-api.jswp-content/plugins/woo-order-export-constant-contact/js/wps-cc-woo-api.jswoo-order-export-constant-contact/css/admin-style.css?ver=woo-order-export-constant-contact/js/wps-cc-woo-api.js?ver=HTML / DOM Fingerprints
id="wc_wps_constant_contact_woo_section_title"id="wc_wps_constant_contact_woo_order_status"id="wc_wps_constant_contact_woo_api_key"id="wc_wps_constant_contact_woo_access_token"id="wc_wps_constant_contact_woo_list_id"