Maximum Quantity for WooCommerce Shops Security & Risk Analysis

wordpress.org/plugins/woocommerce-max-quantity

Set a limit for the maximum quantity that can be added to the WooCommerce cart, globally or per product.

3K active installs v2.3 PHP 7.2+ WP 5.8+ Updated Apr 14, 2025
cart-maxcart-maximummaxmax-quantityorder-limit
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Maximum Quantity for WooCommerce Shops Safe to Use in 2026?

Generally Safe

Score 100/100

Maximum Quantity for WooCommerce Shops has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The provided static analysis results for "woocommerce-max-quantity" v2.3 indicate a strong security posture in several key areas. The plugin exhibits no apparent attack surface via AJAX, REST API, shortcodes, or cron events, and importantly, there are no unprotected entry points. The code also demonstrates good practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and properly escaping all output. File operations and external HTTP requests are also absent, further reducing potential vulnerabilities.

However, the analysis does reveal significant omissions that raise concerns. The complete lack of nonce checks and capability checks across the board is a major weakness. While the attack surface is currently zero, this lack of authentication and authorization mechanisms means that if any new entry points are introduced in future versions, they would be inherently unprotected. The taint analysis reporting zero flows is also worth noting; while positive, it may be due to the limited attack surface. The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive indicator of past security diligence.

In conclusion, "woocommerce-max-quantity" v2.3 presents a mixed security profile. Its current implementation is highly secure due to the absence of entry points and adherence to secure coding practices for database interaction and output. The critical concern lies in the absence of fundamental security checks like nonces and capability checks, which creates a latent risk if the plugin's attack surface were to expand. The clean vulnerability history is commendable, but it doesn't negate the foundational security gaps that could become problematic.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Maximum Quantity for WooCommerce Shops Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Maximum Quantity for WooCommerce Shops Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

Maximum Quantity for WooCommerce Shops Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
filterwoocommerce_inventory_settingswoocommerce-max-quantity.php:37
filterwoocommerce_quantity_input_argswoocommerce-max-quantity.php:38
filterwoocommerce_available_variationwoocommerce-max-quantity.php:39
filterwoocommerce_add_to_cart_validationwoocommerce-max-quantity.php:40
filterwoocommerce_update_cart_validationwoocommerce-max-quantity.php:41
actionwoocommerce_product_options_inventory_product_datawoocommerce-max-quantity.php:42
actionwoocommerce_process_product_metawoocommerce-max-quantity.php:43
filterwoocommerce_store_api_product_quantity_limitwoocommerce-max-quantity.php:44
actioninitwoocommerce-max-quantity.php:47
actionbefore_woocommerce_initwoocommerce-max-quantity.php:392
Maintenance & Trust

Maximum Quantity for WooCommerce Shops Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedApr 14, 2025
PHP min version7.2
Downloads117K

Community Trust

Rating88/100
Number of ratings36
Active installs3K
Developer Profile

Maximum Quantity for WooCommerce Shops Developer Profile

Marco Almeida | Webdados

21 plugins · 27K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
143 days
View full developer profile
Detection Fingerprints

How We Detect Maximum Quantity for WooCommerce Shops

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woocommerce-max-quantity/css/woocommerce-max-quantity.css/wp-content/plugins/woocommerce-max-quantity/js/woocommerce-max-quantity.js
Script Paths
/wp-content/plugins/woocommerce-max-quantity/js/woocommerce-max-quantity.js
Version Parameters
woocommerce-max-quantity/css/woocommerce-max-quantity.css?ver=woocommerce-max-quantity/js/woocommerce-max-quantity.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-product_iddata-variation_id
JS Globals
woocommerce_max_quantity_params
FAQ

Frequently Asked Questions about Maximum Quantity for WooCommerce Shops