
WPC Custom Related Products for WooCommerce Security & Risk Analysis
wordpress.org/plugins/wpc-custom-related-productsWPC Custom Related Products allows you to choose custom related products for each product.
Is WPC Custom Related Products for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100WPC Custom Related Products for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wpc-custom-related-products" v3.2.3 plugin exhibits a generally strong security posture with several positive indicators. The use of prepared statements for all SQL queries and a high percentage of properly escaped output suggest good development practices in preventing common vulnerabilities like SQL injection and XSS. The absence of any recorded CVEs or bundled libraries further contributes to this positive outlook, indicating a likely mature and well-maintained codebase.
However, there are areas of concern that temper this otherwise positive assessment. The presence of two AJAX handlers without authentication checks represents a significant potential attack vector. While the taint analysis did not reveal critical or high severity issues, the single flow with unsanitized paths warrants attention. The use of the `unserialize` function, even without immediate exploitability shown in the analysis, is inherently risky and can lead to deserialization vulnerabilities if not handled with extreme care, especially when dealing with user-controlled input.
In conclusion, while the plugin benefits from robust SQL handling and output escaping, the unprotected AJAX endpoints and the presence of `unserialize` are notable weaknesses. The lack of past vulnerabilities is a positive sign, but it doesn't negate the immediate risks identified in the static analysis. These risks, though not rated as critical in the current analysis, could be exploited in conjunction with other factors or evolve with future WordPress or PHP updates.
Key Concerns
- AJAX handlers without auth checks
- Dangerous function unserialize present
- Flow with unsanitized paths
WPC Custom Related Products for WooCommerce Security Vulnerabilities
WPC Custom Related Products for WooCommerce Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
WPC Custom Related Products for WooCommerce Attack Surface
AJAX Handlers 8
WordPress Hooks 25
Maintenance & Trust
WPC Custom Related Products for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
WPC Custom Related Products for WooCommerce Alternatives
WPC Frequently Bought Together for WooCommerce
woo-bought-together
WPC Frequently Bought Together helps you increase your sales with personalized product recommendations.
WPB Related Products Slider for WooCommerce
wpb-woocommerce-related-products-slider
Replace the default WooCommerce related products with a responsive, dynamic slider to boost product engagement and conversions.
Simple Related Products for WooCommerce
simple-related-products-for-woocommerce
This plugin allows you to choose custom related products for your WooCommerce products. If no related products are selected, a random product from the …
WPC Smart Quick View for WooCommerce
woo-smart-quick-view
WPC Smart Quick View allows users to get a quick look at products without opening the product page.
WPC Smart Wishlist for WooCommerce
woo-smart-wishlist
WPC Smart Wishlist is a simple but powerful tool that can help your customer save products for buying later.
WPC Custom Related Products for WooCommerce Developer Profile
71 plugins · 441K total installs
How We Detect WPC Custom Related Products for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpc-custom-related-products/assets/css/woocr-backend.css/wp-content/plugins/wpc-custom-related-products/assets/js/woocr-backend.js/wp-content/plugins/wpc-custom-related-products/assets/js/woocr-backend.jswpc-custom-related-products/assets/css/woocr-backend.css?ver=wpc-custom-related-products/assets/js/woocr-backend.js?ver=HTML / DOM Fingerprints
woocr-related-products-settings<!-- WPC Custom Related Products for WooCommerce -->