Simla.com Security & Risk Analysis

wordpress.org/plugins/woo-retailcrm

Simla.com integration plugin will help you manage your orders, catalogs and stock more easily by generating a catalog compatible with Simla.com system

400 active installs v5.0.12 PHP 7.1+ WP 5.3+ Updated Mar 12, 2026
crme-commarketing
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simla.com Safe to Use in 2026?

Generally Safe

Score 100/100

Simla.com has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 23d ago
Risk Assessment

The "woo-retailcrm" v5.0.12 plugin exhibits a generally good security posture with no known historical vulnerabilities or critical static analysis findings. The plugin demonstrates strong adherence to secure coding practices, with a high percentage of properly escaped outputs and a significant number of nonce and capability checks in place. The absence of critical taint flows and dangerous functions further reinforces this positive assessment.

However, there are specific areas that warrant attention. The presence of six AJAX handlers without authentication checks represents a significant attack surface that could potentially be exploited by unauthenticated users. While the plugin has no recorded CVEs, this absence could simply mean it hasn't been thoroughly audited or targeted yet. A proactive approach to securing these entry points is crucial.

In conclusion, the plugin is well-developed from a security standpoint, but the unauthenticated AJAX handlers are a clear weakness. Addressing these six unprotected entry points should be the primary focus for improving the plugin's security. The lack of historical vulnerabilities is a positive indicator, but vigilance remains essential.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

Simla.com Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simla.com Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
2 prepared
Unescaped Output
18
139 escaped
Nonce Checks
14
Capability Checks
18
File Operations
1
External Requests
1
Bundled Libraries
0

SQL Query Safety

40% prepared5 total queries

Output Escaping

89% escaped157 total outputs
Attack Surface
6 unprotected

Simla.com Attack Surface

Entry Points18
Unprotected6

AJAX Handlers 18

authwp_ajax_retailcrm_do_uploadinclude\class-wc-retailcrm-base.php:97
authwp_ajax_retailcrm_cron_infoinclude\class-wc-retailcrm-base.php:98
authwp_ajax_retailcrm_set_meta_fieldsinclude\class-wc-retailcrm-base.php:99
authwp_ajax_retailcrm_content_uploadinclude\class-wc-retailcrm-base.php:100
authwp_ajax_retailcrm_generate_icmlinclude\class-wc-retailcrm-base.php:101
authwp_ajax_retailcrm_upload_selected_ordersinclude\class-wc-retailcrm-base.php:102
authwp_ajax_retailcrm_clear_cron_tasksinclude\class-wc-retailcrm-base.php:103
authwp_ajax_retailcrm_get_status_couponinclude\class-wc-retailcrm-base.php:104
authwp_ajax_retailcrm_get_cart_items_for_trackerinclude\class-wc-retailcrm-base.php:124
authwp_ajax_retailcrm_get_customer_info_for_trackerinclude\class-wc-retailcrm-base.php:125
noprivwp_ajax_retailcrm_get_cart_items_for_trackerinclude\class-wc-retailcrm-base.php:126
noprivwp_ajax_retailcrm_get_customer_info_for_trackerinclude\class-wc-retailcrm-base.php:127
authwp_ajax_retailcrm_register_customer_loyaltyinclude\class-wc-retailcrm-base.php:139
authwp_ajax_retailcrm_activate_customer_loyaltyinclude\class-wc-retailcrm-base.php:140
authwp_ajax_retailcrm_confirm_sms_customer_loyaltyinclude\class-wc-retailcrm-base.php:141
authwp_ajax_create_loyalty_couponinclude\class-wc-retailcrm-base.php:145
authwp_ajax_apply_coupon_to_cartinclude\class-wc-retailcrm-base.php:146
authwp_ajax_retailcrm_upload_loyalty_priceinclude\class-wc-retailcrm-base.php:161
WordPress Hooks 55
actioninitinclude\abstracts\class-wc-retailcrm-abstracts-settings.php:53
actionadmin_print_footer_scriptsinclude\abstracts\class-wc-retailcrm-abstracts-settings.php:140
actionadmin_bar_menuinclude\class-wc-retailcrm-base.php:92
actionwoocommerce_checkout_order_processedinclude\class-wc-retailcrm-base.php:93
actionretailcrm_historyinclude\class-wc-retailcrm-base.php:94
actionretailcrm_icmlinclude\class-wc-retailcrm-base.php:95
actionretailcrm_inventoriesinclude\class-wc-retailcrm-base.php:96
actionadmin_print_footer_scriptsinclude\class-wc-retailcrm-base.php:105
actionwoocommerce_update_customerinclude\class-wc-retailcrm-base.php:106
actionuser_registerinclude\class-wc-retailcrm-base.php:107
actionprofile_updateinclude\class-wc-retailcrm-base.php:108
actionwp_print_scriptsinclude\class-wc-retailcrm-base.php:109
actionwp_print_scriptsinclude\class-wc-retailcrm-base.php:110
actionwp_print_scriptsinclude\class-wc-retailcrm-base.php:111
actionwp_enqueue_scriptsinclude\class-wc-retailcrm-base.php:112
actionwp_enqueue_scriptsinclude\class-wc-retailcrm-base.php:113
actionwp_enqueue_scriptsinclude\class-wc-retailcrm-base.php:114
actionwp_print_footer_scriptsinclude\class-wc-retailcrm-base.php:115
actionwp_print_footer_scriptsinclude\class-wc-retailcrm-base.php:116
actionadmin_enqueue_scriptsinclude\class-wc-retailcrm-base.php:117
actionwoocommerce_new_orderinclude\class-wc-retailcrm-base.php:118
actionshutdowninclude\class-wc-retailcrm-base.php:119
actionwp_console_uploadinclude\class-wc-retailcrm-base.php:120
actionwp_footerinclude\class-wc-retailcrm-base.php:121
actionwoocommerce_update_orderinclude\class-wc-retailcrm-base.php:133
actionshutdowninclude\class-wc-retailcrm-base.php:134
actionwoocommerce_saved_order_itemsinclude\class-wc-retailcrm-base.php:135
actioninitinclude\class-wc-retailcrm-base.php:142
actionwoocommerce_account_menu_itemsinclude\class-wc-retailcrm-base.php:143
actionwoocommerce_account_loyalty_endpointinclude\class-wc-retailcrm-base.php:144
actionwoocommerce_cart_couponinclude\class-wc-retailcrm-base.php:149
actionwoocommerce_add_to_cartinclude\class-wc-retailcrm-base.php:151
actionwoocommerce_after_cart_item_quantity_updateinclude\class-wc-retailcrm-base.php:152
actionwoocommerce_cart_item_removedinclude\class-wc-retailcrm-base.php:153
actionwoocommerce_before_cart_emptedinclude\class-wc-retailcrm-base.php:154
actionwoocommerce_removed_couponinclude\class-wc-retailcrm-base.php:155
actionwoocommerce_applied_couponinclude\class-wc-retailcrm-base.php:156
actionwoocommerce_review_order_before_paymentinclude\class-wc-retailcrm-base.php:157
actionwp_trash_postinclude\class-wc-retailcrm-base.php:158
actionretailcrm_loyalty_upload_priceinclude\class-wc-retailcrm-base.php:159
actionadmin_print_footer_scriptsinclude\class-wc-retailcrm-base.php:160
actionregister_forminclude\class-wc-retailcrm-base.php:165
actionwoocommerce_register_forminclude\class-wc-retailcrm-base.php:166
actionwoocommerce_before_checkout_registration_forminclude\class-wc-retailcrm-base.php:169
actionwoocommerce_add_to_cartinclude\class-wc-retailcrm-base.php:179
actionwoocommerce_after_cart_item_quantity_updateinclude\class-wc-retailcrm-base.php:180
actionwoocommerce_cart_item_removedinclude\class-wc-retailcrm-base.php:181
actionwoocommerce_cart_emptiedinclude\class-wc-retailcrm-base.php:182
actionretailcrm_deactivateinclude\class-wc-retailcrm-base.php:188
filtercron_schedulesinclude\class-wc-retailcrm-plugin.php:48
actionadmin_noticesinclude\class-wc-retailcrm-plugin.php:93
filterwoocommerce_integrationswoo-retailcrm.php:51
actionadmin_noticeswoo-retailcrm.php:53
actionplugins_loadedwoo-retailcrm.php:212
actionbefore_woocommerce_initwoo-retailcrm.php:214

Scheduled Events 4

retailcrm_inventories
retailcrm_history
retailcrm_icml
retailcrm_loyalty_upload_price
Maintenance & Trust

Simla.com Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 12, 2026
PHP min version7.1
Downloads45K

Community Trust

Rating60/100
Number of ratings2
Active installs400
Developer Profile

Simla.com Developer Profile

Simla.com

1 plugin · 400 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simla.com

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woo-retailcrm/includes/css/retailcrm.css/wp-content/plugins/woo-retailcrm/includes/js/retailcrm.js
Script Paths
/wp-content/plugins/woo-retailcrm/includes/js/retailcrm.js
Version Parameters
woo-retailcrm/includes/css/retailcrm.css?ver=woo-retailcrm/includes/js/retailcrm.js?ver=

HTML / DOM Fingerprints

CSS Classes
retailcrm_activeretailcrm_in_activeretailcrm_disconnected
Data Attributes
data-retailcrm-customer-id
JS Globals
retailcrm
FAQ

Frequently Asked Questions about Simla.com