Premmerce SEO for WooCommerce Security & Risk Analysis

wordpress.org/plugins/woo-seo-addon

Premmerce SEO for WooCommerce plugin extends the functionality of WooCommerce microdata management.

1K active installs v2.1.6 PHP 5.6+ WP 4.8+ Updated Dec 23, 2025
opengraphschema-orgtwitter-cardswoocommerce-seoyoast
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Premmerce SEO for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Premmerce SEO for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The 'woo-seo-addon' v2.1.6 plugin exhibits a generally strong security posture based on the static analysis and vulnerability history provided. The absence of any recorded CVEs, coupled with the complete lack of critical or high-severity vulnerabilities in its history, suggests a well-maintained and secure plugin. Furthermore, the static analysis reveals no dangerous functions, no file operations, no external HTTP requests, and all SQL queries are properly prepared. The plugin also has a very small attack surface, with zero entry points identified, which is a positive indicator for security.

However, there are a few areas that warrant attention. While the total number of output escapsements is high, a significant portion (26%) are not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is reflected in these outputs without proper sanitization. Additionally, the complete absence of nonce checks and capability checks, while not directly problematic given the zero attack surface, is a missed opportunity to implement robust security measures that would be beneficial if the attack surface were to expand in future versions. The bundled Freemius library also carries a minor risk if it's an outdated version, as this can introduce vulnerabilities.

In conclusion, 'woo-seo-addon' v2.1.6 appears to be a secure plugin with no known historical vulnerabilities and a very limited attack surface. The primary concerns are the unescaped outputs and the potential for outdated bundled libraries. These are manageable risks, but addressing them would further enhance the plugin's security.

Key Concerns

  • Unescaped output identified (26%)
  • Bundled outdated library (Freemius v1.0)
  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Premmerce SEO for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Premmerce SEO for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
6 prepared
Unescaped Output
9
25 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

100% prepared6 total queries

Output Escaping

74% escaped34 total outputs
Attack Surface

Premmerce SEO for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 22
filterconnect_urlfreemius.php:40
filterafter_skip_urlfreemius.php:41
filterafter_connect_urlfreemius.php:42
filterafter_pending_connect_urlfreemius.php:43
actionafter_uninstallpremmerce-seo-addon.php:41
filterconfig_premmerce_seosrc\Admin\Admin.php:51
filteradmin_menusrc\Admin\Admin.php:52
filteradmin_footer_textsrc\Admin\Admin.php:53
actionadmin_initsrc\Admin\Admin.php:54
actionplugins_loadedsrc\Core\Config\Config.php:29
actionadmin_initsrc\Core\Config\Config.php:38
actionpremmerce_filter_rule_foundsrc\Core\MetaEngines\LinksEngine.php:28
actionwp_headsrc\Frontend\Handler\Standard.php:23
filterlanguage_attributessrc\Frontend\Handler\Standard.php:27
actionplugins_loadedsrc\Frontend\Handler\YoastSEO.php:25
actionwpseo_opengraphsrc\Frontend\Handler\YoastSEO.php:33
filterwpseo_opengraph_typesrc\Frontend\Handler\YoastSEO.php:35
actionwp_headsrc\Frontend\Seo.php:57
filterwoocommerce_structured_data_productsrc\Frontend\Seo.php:60
filterget_post_metadatasrc\Frontend\Seo.php:64
actioninitsrc\SeoAddonPlugin.php:59
actionadmin_initsrc\SeoAddonPlugin.php:60
Maintenance & Trust

Premmerce SEO for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 23, 2025
PHP min version5.6
Downloads86K

Community Trust

Rating68/100
Number of ratings7
Active installs1K
Developer Profile

Premmerce SEO for WooCommerce Developer Profile

Premmerce

14 plugins · 60K total installs

75
trust score
Avg Security Score
94/100
Avg Patch Time
416 days
View full developer profile
Detection Fingerprints

How We Detect Premmerce SEO for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woo-seo-addon/build/css/frontend.css/wp-content/plugins/woo-seo-addon/build/js/frontend.js
Script Paths
/wp-content/plugins/woo-seo-addon/build/js/frontend.js
Version Parameters
woo-seo-addon/build/css/frontend.css?ver=woo-seo-addon/build/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
premmerce-seo-addon-meta
HTML Comments
<!-- Premmerce SEO Addon -->
Data Attributes
data-premmerce-seo-addon
JS Globals
window.PremmerceSeoAddon
FAQ

Frequently Asked Questions about Premmerce SEO for WooCommerce