Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Security & Risk Analysis

wordpress.org/plugins/woocommerce-product-stock-alert

WooCommerce back in stock notifier and stock manager plugin. Manage inventory, enable waitlists, and send stock notifications automatically.

3K active installs v3.0.6 PHP 8.0+ WP 6.4+ Updated Dec 11, 2025
back-in-stock-notifierinventory-managementout-of-stock-notifictaionstock-managerwaitlist
99
A · Safe
CVEs total2
Unpatched0
Last CVEJul 12, 2023
Safety Verdict

Is Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Safe to Use in 2026?

Generally Safe

Score 99/100

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

2 known CVEsLast CVE: Jul 12, 2023Updated 5mo ago
Risk Assessment

The "woocommerce-product-stock-alert" plugin v3.0.6 exhibits a mixed security posture. While the static analysis shows a relatively low number of dangerous functions, SQL query preparation is good at 78%, and output escaping is strong at 87%. The absence of file operations and external HTTP requests is also a positive sign. However, the presence of 7 AJAX handlers, with one lacking authentication checks, is a significant concern, as it represents a direct attack vector without proper authorization. Taint analysis did not reveal any immediate critical or high-severity issues, which is encouraging.

Key Concerns

  • AJAX handler without auth checks
  • Two medium severity vulnerabilities historically
Vulnerabilities
2 published

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Security Vulnerabilities

CVEs by Year

2 CVEs in 2023
2023
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2023-37972medium · 5.3Exposure of Sensitive Information to an Unauthorized Actor

WooCommerce Product Stock Alert <= 2.0.1 - Information Disclosure

Jul 12, 2023 Patched in 2.0.2 (195d)
CVE-2023-37971medium · 5.4Missing Authorization

WooCommerce Product Stock Alert <= 2.0.1 - Missing Authorization via API

Jul 10, 2023 Patched in 2.0.2 (197d)
Version History

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Release Timeline

v3.0.6Current
v3.0.5
v3.0.4
v3.0.3
v3.0.2
v3.0.1
v3.0.0
v2.5.17
v2.5.16
v2.5.15
v2.5.14
v2.5.13
v2.5.12
v2.5.11
v2.5.10
v2.5.9
v2.5.8
v2.5.7
v2.5.6
v2.5.5
Code Analysis
Analyzed Mar 16, 2026

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
14 prepared
Unescaped Output
15
98 escaped
Nonce Checks
3
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

SQL Query Safety

78% prepared18 total queries

Output Escaping

87% escaped113 total outputs
Attack Surface
1 unprotected

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Attack Surface

Entry Points8
Unprotected1

AJAX Handlers 7

authwp_ajax_subscribe_usersclasses\Ajax.php:26
noprivwp_ajax_subscribe_usersclasses\Ajax.php:27
authwp_ajax_unsubscribe_usersclasses\Ajax.php:29
noprivwp_ajax_unsubscribe_usersclasses\Ajax.php:30
authwp_ajax_export_subscribersclasses\Ajax.php:32
noprivwp_ajax_get_subscription_form_for_variationclasses\Ajax.php:34
authwp_ajax_get_subscription_form_for_variationclasses\Ajax.php:35

Shortcodes 1

[notifima_subscription_form] classes\Shortcode.php:26
WordPress Hooks 37
actionadmin_menuclasses\Admin.php:26
actionadmin_enqueue_scriptsclasses\Admin.php:28
actionmanage_edit-product_columnsclasses\Admin.php:31
actionmanage_product_posts_custom_columnclasses\Admin.php:33
actionwoocommerce_product_options_inventory_product_dataclasses\Admin.php:36
actionwoocommerce_product_after_variable_attributesclasses\Admin.php:37
filterbulk_actions-edit-productclasses\Admin.php:40
filterhandle_bulk_actions-edit-productclasses\Admin.php:41
actionadmin_noticesclasses\Admin.php:42
filterallowed_redirect_hostsclasses\Admin.php:45
actionload_script_textdomain_relative_pathclasses\Admin.php:47
actioninitclasses\Block.php:35
actionenqueue_block_assetsclasses\Block.php:37
actionwp_enqueue_scriptsclasses\FrontEnd.php:59
actionwp_enqueue_scriptsclasses\FrontEnd.php:61
actionwpclasses\FrontEnd.php:63
actionwp_headclasses\FrontEnd.php:66
filternotifima_display_product_lead_timeclasses\FrontEnd.php:68
actionwoocommerce_simple_add_to_cartclasses\FrontEnd.php:76
actionwoocommerce_after_variations_formclasses\FrontEnd.php:77
filterwoocommerce_grouped_product_list_column_priceclasses\FrontEnd.php:79
actionwp_enqueue_scriptsclasses\FrontendScripts.php:38
actionadmin_enqueue_scriptsclasses\FrontendScripts.php:39
actioninitclasses\Notifima.php:61
actionadmin_noticesclasses\Notifima.php:68
actionbefore_woocommerce_initclasses\Notifima.php:70
actionwoocommerce_loadedclasses\Notifima.php:71
actionplugins_loadedclasses\Notifima.php:72
filterplugin_row_metaclasses\Notifima.php:73
actioninitclasses\Notifima.php:74
filterwoocommerce_email_classesclasses\Notifima.php:182
actionadmin_noticesclasses\Notifima.php:232
actionrest_api_initclasses\RestAPI.php:26
actionnotifima_start_notification_cron_jobclasses\Subscriber.php:25
actionwoocommerce_update_productclasses\Subscriber.php:26
actiondelete_postclasses\Subscriber.php:27
actionnotifima_start_subscriber_migrationclasses\Subscriber.php:28

Scheduled Events 2

notifima_start_subscriber_migration
notifima_start_notification_cron_job
Maintenance & Trust

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.0
Last updatedDec 11, 2025
PHP min version8.0
Downloads163K

Community Trust

Rating88/100
Number of ratings45
Active installs3K
Developer Profile

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Developer Profile

MultiVendorX

5 plugins · 13K total installs

74
trust score
Avg Security Score
93/100
Avg Patch Time
271 days
View full developer profile
Detection Fingerprints

How We Detect Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woocommerce-product-stock-alert/assets/css/custom.css/wp-content/plugins/woocommerce-product-stock-alert/assets/css/custom-admin.css/wp-content/plugins/woocommerce-product-stock-alert/assets/js/frontend-scripts.js/wp-content/plugins/woocommerce-product-stock-alert/assets/js/admin-scripts.js
Script Paths
/wp-content/plugins/woocommerce-product-stock-alert/assets/js/frontend-scripts.js/wp-content/plugins/woocommerce-product-stock-alert/assets/js/admin-scripts.js
Version Parameters
woocommerce-product-stock-alert/assets/css/custom.css?ver=woocommerce-product-stock-alert/assets/css/custom-admin.css?ver=woocommerce-product-stock-alert/assets/js/frontend-scripts.js?ver=woocommerce-product-stock-alert/assets/js/admin-scripts.js?ver=

HTML / DOM Fingerprints

CSS Classes
notifima-pro-tagadmin-menu
Data Attributes
data-notifima-product-iddata-notifima-form-id
JS Globals
NotifimaFrontend
Shortcode Output
[notifima_stock_alert]
FAQ

Frequently Asked Questions about Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist