
WP e-Commerce Related Products Security & Risk Analysis
wordpress.org/plugins/wpec-related-productsWPEC Related Products for WP e-Commerce uses information available within the Single Product template to display related Products.
Is WP e-Commerce Related Products Safe to Use in 2026?
Generally Safe
Score 85/100WP e-Commerce Related Products has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wpec-related-products" v1.3.2 plugin exhibits a strong security posture in several key areas, notably the absence of known vulnerabilities and the complete reliance on prepared statements for its SQL queries. The plugin also reports zero external HTTP requests, file operations, and no reported CVEs, indicating a generally well-maintained and secure codebase. However, the static analysis reveals a significant weakness: 0% of its 24 output operations are properly escaped. This absence of output escaping presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities, as malicious data could be injected and rendered directly in the user's browser without proper sanitization. While the plugin has no reported vulnerability history, the lack of output escaping is a critical concern that could be easily exploited if user-supplied data is ever incorporated into these output streams.
Key Concerns
- 0% of outputs properly escaped
WP e-Commerce Related Products Security Vulnerabilities
WP e-Commerce Related Products Code Analysis
Output Escaping
WP e-Commerce Related Products Attack Surface
WordPress Hooks 3
Maintenance & Trust
WP e-Commerce Related Products Maintenance & Trust
Maintenance Signals
Community Trust
WP e-Commerce Related Products Alternatives
Add TinyMCE to the Additional Description field
tinymce-for-wp-e-commerce-additional-description
Add TinyMCE to the Additional Description field of WP E-Commerce. Possibility insert additional product photos, even without buying GoldenCart!
Speculative Loading
speculation-rules
Enables browsers to speculatively prerender or prefetch pages to achieve near-instant loads based on user interaction.
JSM Show Post Metadata
jsm-show-post-meta
Show post metadata (aka custom fields) in a metabox when editing posts / pages - a great tool for debugging issues with post metadata.
Product Customer List for WooCommerce
wc-product-customer-list
Display a list of customers who bought a specific product at the bottom of the product edit page in WooCommerce and send them e-mails.
Post/Page Specific Custom Code
postpage-specific-custom-css
Add custom CSS to posts, pages, or WooCommerce products, with optional archive support. Includes a dedicated editor box.
WP e-Commerce Related Products Developer Profile
4 plugins · 100 total installs
How We Detect WP e-Commerce Related Products
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpec-related-products/wpec-related-product.phpHTML / DOM Fingerprints
wpec-related-wrapwpec-related-productwpec-related-imagewpec-related-titleid="related-pro-id="product_image_<div class='wpec-related-wrap'><h2>Related Products</h2><div class='wpec-related-product product-<div class='wpec-related-image' id='related-pro-