
Customer Order History for WooCommerce Security & Risk Analysis
wordpress.org/plugins/woohistoryCustomer Order History Plugin for WooCommerce. View Previous Orders from the same customer, even if order as guest.
Is Customer Order History for WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100Customer Order History for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of woohistory v2.4 reveals a plugin with a seemingly small attack surface, reporting zero AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, there are no identified dangerous functions, file operations, or external HTTP requests. The plugin also exclusively uses prepared statements for its SQL queries, which is a strong security practice. However, a significant concern lies in the output escaping, where only 25% of outputs are properly escaped, indicating a potential for Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is being outputted without sanitization. The lack of nonce checks and capability checks across all identified entry points (though there are none reported) is also a potential weakness, as any newly introduced entry points in future versions might inherit this lack of protection. The vulnerability history shows no recorded CVEs, which is positive, suggesting a good track record. Despite the lack of reported vulnerabilities and good SQL practices, the poor output escaping and absence of fundamental security checks like nonces and capability checks represent real risks that could be exploited if any untrusted data is processed or displayed by the plugin. It's crucial to address the output escaping issue to mitigate XSS risks.
Key Concerns
- Low percentage of properly escaped output
- No nonce checks implemented
- No capability checks implemented
- Bundled Freemius v1.0 is outdated
Customer Order History for WooCommerce Security Vulnerabilities
Customer Order History for WooCommerce Code Analysis
Bundled Libraries
Output Escaping
Customer Order History for WooCommerce Attack Surface
WordPress Hooks 10
Maintenance & Trust
Customer Order History for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Customer Order History for WooCommerce Alternatives
Order Status History for WooCommerce
order-status-history-for-woocommerce
Speed up your daily processing of orders by getting to know more about who's ordering. Themed order status color swatches, Reports, CSV, free.
Track Order History for WooCommerce
wc-past-orders
Woocommerce supportive plugin for easy customer history and previously placed orders.
Customer Statistics for WooCommerce
customer-statistics-for-woocommerce
This plugin adds useful Customer Statistics to WooCommerce Orders List
PureDevs Customer History for WooCommerce
puredevs-customer-history-for-woocommerce
Track your WooCommerce customers' order history, spending, and behaviour from a clean admin dashboard.
Export Customers Data
export-customers-data
Easily export WooCommerce customers' data to CSV or XLSX with advanced filters and smart field support.
Customer Order History for WooCommerce Developer Profile
1 plugin · 100 total installs
How We Detect Customer Order History for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/woohistory/css/admin.css/wp-content/plugins/woohistory/css/woohistory-fonts.csswoohistory-admin.css?ver=woohistory-fonts.css?ver=HTML / DOM Fingerprints
order-statuscolumn-woohistoryname="woohistory_search_by_phone"name="woohistory_search_by_email"name="woohistory_search_by_name"