
WPB Related Products Slider for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wpb-woocommerce-related-products-sliderReplace the default WooCommerce related products with a responsive, dynamic slider to boost product engagement and conversions.
Is WPB Related Products Slider for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100WPB Related Products Slider for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wpb-woocommerce-related-products-slider" plugin version 1.9 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and appears to have no known vulnerabilities in its history. The attack surface is also minimal, with only one shortcode identified as an entry point and no AJAX handlers or REST API routes without authentication checks. However, significant concerns arise from the static code analysis. The presence of the dangerous `create_function` function is a critical security risk, as it can lead to arbitrary code execution if misused or if its input is not strictly controlled. Furthermore, a substantial portion of output (55%) is not properly escaped, which opens the door to Cross-Site Scripting (XSS) vulnerabilities. The absence of nonce checks and capability checks on its entry points, even if limited, represents a missed opportunity for robust access control and protection against certain types of attacks.
While the lack of known CVEs and taint analysis findings is encouraging, the identified code signals of `create_function` and insufficient output escaping are serious flaws that require immediate attention. The plugin's strengths lie in its minimal attack surface and secure SQL handling, but these are overshadowed by the potential for code execution and XSS due to improper output sanitization and the use of a deprecated, insecure function. A balanced conclusion is that while the plugin currently has no recorded vulnerabilities, the static analysis reveals critical weaknesses that could be exploited, particularly the `create_function` and unescaped output.
Key Concerns
- Dangerous function create_function found
- Insufficient output escaping (45% properly escaped)
- Missing nonce checks
- Missing capability checks
WPB Related Products Slider for WooCommerce Security Vulnerabilities
WPB Related Products Slider for WooCommerce Code Analysis
Dangerous Functions Found
Output Escaping
WPB Related Products Slider for WooCommerce Attack Surface
Shortcodes 1
WordPress Hooks 14
Maintenance & Trust
WPB Related Products Slider for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
WPB Related Products Slider for WooCommerce Alternatives
Related Products Slider for WooCommerce
related-products-slider-for-woocommerce
With Related Products Slider for WooCommerce helps you can easily create and customize any related products to fit your need in short time
Related Products – Create Upsells, Cross-sells, and Product Recommendations for WooCommerce
wt-woocommerce-related-products
This WooCommerce related products plugin, lets you create upsells, and cross-sells with smart WooCommerce product recommendations widget.
Related Products for WooCommerce
woo-related-products-refresh-on-reload
Display random related products in a slider based on product category, tag, or attribute on every product page.
Leo Product Recommendations for WooCommerce
leo-product-recommendations
Boost WooCommerce sales with smart product recommendation popups on add to cart.
Simple Related Products for WooCommerce
simple-related-products-for-woocommerce
This plugin allows you to choose custom related products for your WooCommerce products. If no related products are selected, a random product from the …
WPB Related Products Slider for WooCommerce Developer Profile
25 plugins · 40K total installs
How We Detect WPB Related Products Slider for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpb-woocommerce-related-products-slider/css/wpb-wrps-frontend.css/wp-content/plugins/wpb-woocommerce-related-products-slider/css/slick.css/wp-content/plugins/wpb-woocommerce-related-products-slider/css/slick-theme.css/wp-content/plugins/wpb-woocommerce-related-products-slider/js/wpb-wrps-frontend.js/wp-content/plugins/wpb-woocommerce-related-products-slider/js/slick.min.js/wp-content/plugins/wpb-woocommerce-related-products-slider/js/wpb-wrps-frontend.js/wp-content/plugins/wpb-woocommerce-related-products-slider/js/slick.min.jswpb-woocommerce-related-products-slider/css/wpb-wrps-frontend.css?ver=wpb-woocommerce-related-products-slider/css/slick.css?ver=wpb-woocommerce-related-products-slider/css/slick-theme.css?ver=wpb-woocommerce-related-products-slider/js/wpb-wrps-frontend.js?ver=wpb-woocommerce-related-products-slider/js/slick.min.js?ver=HTML / DOM Fingerprints
wpb-wrps-containerdata-slickwpb_wrps_frontend_params