
All Currencies for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woocommerce-all-currenciesPlugin extends WooCommerce by adding all world currencies and cryptocurrencies.
Is All Currencies for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100All Currencies for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The "woocommerce-all-currencies" plugin version 2.4.4 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, file operations, and external HTTP requests, coupled with the fact that all SQL queries use prepared statements, are positive indicators. The plugin also demonstrates good practices in output escaping, with 80% of outputs being properly escaped.
However, there are a few areas for concern. The vulnerability history indicates a past medium-severity Cross-site Scripting (XSS) vulnerability. While currently unpatched CVEs are zero, the presence of a historical XSS vulnerability warrants attention. Furthermore, the lack of nonce checks and capability checks across the plugin's entry points, particularly for the single shortcode, is a notable weakness. This could potentially expose the plugin to various attacks if malicious input can be injected or if unauthorized users can trigger shortcode functionality.
In conclusion, while the plugin has strengths in its coding practices regarding SQL and output escaping, the past XSS vulnerability and the absence of critical security checks like nonces and capability checks represent potential risks that should be addressed. Users should ensure they are on the latest version and monitor for future security updates.
Key Concerns
- Past medium-severity XSS vulnerability
- No nonce checks on entry points
- No capability checks on entry points
- Some outputs are not properly escaped
All Currencies for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
All Currencies for WooCommerce <= 2.4.4 - Authenticated (Contributor+) Stored Cross-Site Scripting
All Currencies for WooCommerce Code Analysis
Output Escaping
All Currencies for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 11
Maintenance & Trust
All Currencies for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
All Currencies for WooCommerce Alternatives
NOWPayments for WooCommerce – Crypto Payment Gateway
nowpayments-for-woocommerce
Accept Bitcoin, Ethereum, and 300+ cryptocurrencies in WooCommerce using the official NOWPayments crypto payment gateway.
Pay With MetaMask For WooCommerce – Cryptocurrency Payment Gateway
cryptocurrency-payments-using-metamask-for-woocommerce
Use MetaMask cryptocurrency payment gateway for WooCommerce store and let customers pay with USDT, ETH, BNB, or BUSD.
Helio Pay (Accept 1-click crypto payments #USDC #SOL #BTC #ETH)
helio
Helio Pay ⚡⚡ Sell more with crypto ⚡⚡ - Accept crypto payments the easy way - Set up in minutes & get paid instantly with real-time payouts - Sell …
Accept Bitcoin instantly via OpenNode
opennode-for-woocommerce
Start accepting Bitcoin instantly through Lightning Network today. Powered by OpenNode
CryptocurrencyCheckout Woocommerce Gateway
cryptocurrencycheckout-woocommerce-gateway
This Plugin Connects your WooCommerce Store to the CryptocurrencyCheckout Payment Gateway so you can start accepting Cryptocurrencies without any fees
All Currencies for WooCommerce Developer Profile
9 plugins · 37K total installs
How We Detect All Currencies for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woocommerce-all-currencies/assets/css/admin-style.css/wp-content/plugins/woocommerce-all-currencies/assets/js/admin-script.js/wp-content/plugins/woocommerce-all-currencies/assets/js/admin-script.jswoocommerce-all-currencies/assets/css/admin-style.css?ver=woocommerce-all-currencies/assets/js/admin-script.js?ver=HTML / DOM Fingerprints
alg-wc-all-currencies-settings<!-- add_settings_to_status_report --><!-- region add_settings_to_status_report --><!-- endregion add_settings_to_status_report -->data-export-label="All Currencies Settings"data-export-label=alg_wc_all_currencies_params