Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Security & Risk Analysis

wordpress.org/plugins/woocommerce-product-stock-alert

WooCommerce back in stock notifier and stock manager plugin. Manage inventory, enable waitlists, and send stock notifications automatically.

3K active installs v3.0.6 PHP 8.0+ WP 6.4+ Updated Dec 11, 2025
back-in-stock-notifierinventory-managementout-of-stock-notifictaionstock-managerwaitlist
99
A · Safe
CVEs total2
Unpatched0
Last CVEJul 12, 2023
Safety Verdict

Is Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Safe to Use in 2026?

Generally Safe

Score 99/100

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist has a strong security track record. Known vulnerabilities have been patched promptly.

2 known CVEsLast CVE: Jul 12, 2023Updated 3mo ago
Risk Assessment

The "woocommerce-product-stock-alert" plugin v3.0.6 exhibits a mixed security posture. While the static analysis shows a relatively low number of dangerous functions, SQL query preparation is good at 78%, and output escaping is strong at 87%. The absence of file operations and external HTTP requests is also a positive sign. However, the presence of 7 AJAX handlers, with one lacking authentication checks, is a significant concern, as it represents a direct attack vector without proper authorization. Taint analysis did not reveal any immediate critical or high-severity issues, which is encouraging.

Key Concerns

  • AJAX handler without auth checks
  • Two medium severity vulnerabilities historically
Vulnerabilities
2

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Security Vulnerabilities

CVEs by Year

2 CVEs in 2023
2023
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2023-37972medium · 5.3Exposure of Sensitive Information to an Unauthorized Actor

WooCommerce Product Stock Alert <= 2.0.1 - Information Disclosure

Jul 12, 2023 Patched in 2.0.2 (195d)
CVE-2023-37971medium · 5.4Missing Authorization

WooCommerce Product Stock Alert <= 2.0.1 - Missing Authorization via API

Jul 10, 2023 Patched in 2.0.2 (197d)
Code Analysis
Analyzed Mar 16, 2026

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Code Analysis

Dangerous Functions
0
Raw SQL Queries
4
14 prepared
Unescaped Output
15
98 escaped
Nonce Checks
3
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

SQL Query Safety

78% prepared18 total queries

Output Escaping

87% escaped113 total outputs
Attack Surface
1 unprotected

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Attack Surface

Entry Points8
Unprotected1

AJAX Handlers 7

authwp_ajax_subscribe_usersclasses\Ajax.php:26
noprivwp_ajax_subscribe_usersclasses\Ajax.php:27
authwp_ajax_unsubscribe_usersclasses\Ajax.php:29
noprivwp_ajax_unsubscribe_usersclasses\Ajax.php:30
authwp_ajax_export_subscribersclasses\Ajax.php:32
noprivwp_ajax_get_subscription_form_for_variationclasses\Ajax.php:34
authwp_ajax_get_subscription_form_for_variationclasses\Ajax.php:35

Shortcodes 1

[notifima_subscription_form] classes\Shortcode.php:26
WordPress Hooks 37
actionadmin_menuclasses\Admin.php:26
actionadmin_enqueue_scriptsclasses\Admin.php:28
actionmanage_edit-product_columnsclasses\Admin.php:31
actionmanage_product_posts_custom_columnclasses\Admin.php:33
actionwoocommerce_product_options_inventory_product_dataclasses\Admin.php:36
actionwoocommerce_product_after_variable_attributesclasses\Admin.php:37
filterbulk_actions-edit-productclasses\Admin.php:40
filterhandle_bulk_actions-edit-productclasses\Admin.php:41
actionadmin_noticesclasses\Admin.php:42
filterallowed_redirect_hostsclasses\Admin.php:45
actionload_script_textdomain_relative_pathclasses\Admin.php:47
actioninitclasses\Block.php:35
actionenqueue_block_assetsclasses\Block.php:37
actionwp_enqueue_scriptsclasses\FrontEnd.php:59
actionwp_enqueue_scriptsclasses\FrontEnd.php:61
actionwpclasses\FrontEnd.php:63
actionwp_headclasses\FrontEnd.php:66
filternotifima_display_product_lead_timeclasses\FrontEnd.php:68
actionwoocommerce_simple_add_to_cartclasses\FrontEnd.php:76
actionwoocommerce_after_variations_formclasses\FrontEnd.php:77
filterwoocommerce_grouped_product_list_column_priceclasses\FrontEnd.php:79
actionwp_enqueue_scriptsclasses\FrontendScripts.php:38
actionadmin_enqueue_scriptsclasses\FrontendScripts.php:39
actioninitclasses\Notifima.php:61
actionadmin_noticesclasses\Notifima.php:68
actionbefore_woocommerce_initclasses\Notifima.php:70
actionwoocommerce_loadedclasses\Notifima.php:71
actionplugins_loadedclasses\Notifima.php:72
filterplugin_row_metaclasses\Notifima.php:73
actioninitclasses\Notifima.php:74
filterwoocommerce_email_classesclasses\Notifima.php:182
actionadmin_noticesclasses\Notifima.php:232
actionrest_api_initclasses\RestAPI.php:26
actionnotifima_start_notification_cron_jobclasses\Subscriber.php:25
actionwoocommerce_update_productclasses\Subscriber.php:26
actiondelete_postclasses\Subscriber.php:27
actionnotifima_start_subscriber_migrationclasses\Subscriber.php:28

Scheduled Events 2

notifima_start_subscriber_migration
notifima_start_notification_cron_job
Maintenance & Trust

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.0
Last updatedDec 11, 2025
PHP min version8.0
Downloads163K

Community Trust

Rating88/100
Number of ratings45
Active installs3K
Developer Profile

Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist Developer Profile

MultiVendorX

5 plugins · 13K total installs

74
trust score
Avg Security Score
93/100
Avg Patch Time
271 days
View full developer profile
Detection Fingerprints

How We Detect Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woocommerce-product-stock-alert/assets/css/custom.css/wp-content/plugins/woocommerce-product-stock-alert/assets/css/custom-admin.css/wp-content/plugins/woocommerce-product-stock-alert/assets/js/frontend-scripts.js/wp-content/plugins/woocommerce-product-stock-alert/assets/js/admin-scripts.js
Script Paths
/wp-content/plugins/woocommerce-product-stock-alert/assets/js/frontend-scripts.js/wp-content/plugins/woocommerce-product-stock-alert/assets/js/admin-scripts.js
Version Parameters
woocommerce-product-stock-alert/assets/css/custom.css?ver=woocommerce-product-stock-alert/assets/css/custom-admin.css?ver=woocommerce-product-stock-alert/assets/js/frontend-scripts.js?ver=woocommerce-product-stock-alert/assets/js/admin-scripts.js?ver=

HTML / DOM Fingerprints

CSS Classes
notifima-pro-tagadmin-menu
Data Attributes
data-notifima-product-iddata-notifima-form-id
JS Globals
NotifimaFrontend
Shortcode Output
[notifima_stock_alert]
FAQ

Frequently Asked Questions about Notifima – WooCommerce Stock Manager, Inventory Management, Waitlist