
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Security & Risk Analysis
wordpress.org/plugins/woocommerce-and-1centerprise-data-exchangeProvides data exchange between the WooCommerce plugin and business application "1C:Enterprise 8. Trade Management" (and compatible ones).
Is Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Safe to Use in 2026?
Generally Safe
Score 100/100Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'woocommerce-and-1centerprise-data-exchange' v0.9.20 presents a mixed security posture. On the positive side, it has no known CVEs, a clean vulnerability history, and a limited attack surface in terms of exposed entry points like AJAX handlers, REST API routes, and shortcodes. The absence of external HTTP requests is also a good sign. However, significant concerns arise from the static code analysis. The presence of the 'exec' function, a potentially dangerous function, is a major red flag, especially when coupled with a complete lack of nonce checks and only two capability checks. This suggests a high risk of arbitrary code execution if user-supplied data can be made to influence the arguments passed to 'exec'. Furthermore, only 34% of output escaping is properly handled, increasing the risk of cross-site scripting (XSS) vulnerabilities. The taint analysis revealing two flows with unsanitized paths, while not classified as critical or high severity in this instance, highlights potential data manipulation issues that could be exploited in conjunction with the dangerous functions or unescaped output. The lack of nonce checks and limited capability checks is particularly concerning, as it implies that these powerful functions and potentially sensitive data operations may not be adequately protected against unauthorized access or manipulation.
Key Concerns
- Presence of 'exec' function
- No nonce checks found
- Low percentage of properly escaped output
- Taint flows with unsanitized paths
- Only 2 capability checks
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Security Vulnerabilities
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Attack Surface
WordPress Hooks 16
Maintenance & Trust
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Maintenance & Trust
Maintenance Signals
Community Trust
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Alternatives
EDI – Обмен данными между WooCommerce и 1С
e-commerce-data-interchange
Бесплатный плагин для автоматической синхронизации товаров, остатков и заказов между WooCommerce и 1С. Работает на любом хостинге, без сложной настрой …
Sharespine Woocommerce Connector
sharespine-woocommerce-connector
Premium Synchronizing of customers, products and orders from WooCommerce to Fortnox, Specter, Visma, Mamut, Hogia, CDON, Fyndiq, Tradera, Afound ...
Magento 2 WP Integration
m2wp
Combine Magento 2 with the CMS capabilities of WordPress. Seamless user experience for visitors by integrating the design of Magento and WordPress.
Integration E-conomic for WooCommerce
integration-e-conomic-for-woocommerce
Seamless WooCommerce Integration with E-conomic
iMega Teleport
imega-teleport
Import your products from your 1C to your eShop. Взаимосвязь интернет-магазина и 1С.
Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие Developer Profile
1 plugin · 1K total installs
How We Detect Data Exchange for WooCommerce and 1C:Enterprise/1С:Предприятие
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woocommerce-and-1centerprise-data-exchange/assets/css/admin.css/wp-content/plugins/woocommerce-and-1centerprise-data-exchange/assets/js/admin.js/wp-content/plugins/woocommerce-and-1centerprise-data-exchange/assets/js/admin.jswoocommerce-and-1centerprise-data-exchange/assets/css/admin.css?ver=woocommerce-and-1centerprise-data-exchange/assets/js/admin.js?ver=HTML / DOM Fingerprints
wc1c_guidwc1c_guid