Related Products for WooCommerce
Related Products for WooCommerce has one disclosed vulnerability in the WordSec catalog, all reported in 2023; it is fixed as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for Related Products for WooCommerce has a vendor fix available, so running the current release closes it.
All of these findings were reported by István Márton. Related Products for WooCommerce is installed on roughly 3,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.8.8.
CVE-2023-5234Related Products for WooCommerce <= 3.3.15 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
Read the full analysisVulnerability Records

Related Products for WooCommerce
Author
peachpay
Display fresh, random WooCommerce related products on every single product page load (in a slider or not) based on the current product’s category, tags, or attributes. Related products can be configured to display in posts, pages, and sidebar widgets, and can be configured to exclude categories. Use the shortcode [woo-related] for product pages or [woo-related id='XX'] / [woo-related product-id='XX' show-title='no'] for posts, pages, and widgets. Exclude taxonomies using the the option field in the settings page. The shortcode accepts id, title and number. Shortcode examples [woo-related id='15'] will display related products based on product ID 15. [woo-related id='15' title='no'] is the same as above but will hide Related Products title. For sidebars, etc. you can use the widget title. [woo-related id='15' title='no' number='1'] is the same as above but will return only 1 product. [woo-related] will use current product’s ID. This should be used on product pages only. Related Products for WooCommerce can help you: Display real related products (using a slider or not) Set the related product’s heading text (you can use HTML) Set the number of related products you want to display or disable them Set category or tag based related products Display related products using Flexslider Translate related products heading text Exclude taxonomies from your related products Use a shortcode to add related products to posts/pages and widgets Related Products block position Move related products Related Products for WooCommerce uses WordPress hooks to display related products on product pages. If you need to move the related products block you can remove the action and add it again using a different hook or priority. This is extremly helpful if you code your own theme or child theme. To remove related products block you can use remove_action( 'woocommerce_after_single_product', 'wrprrdisplay' ); in your theme’s functions.php file. If you want to add it again you can do something like this add_action( 'woocommerce_after_single_product', 'wrprrdisplay', 55 ); or add_action( 'ANY-OTHER-HOOK', 'wrprrdisplay', PRIORITY ); Check GitHub for all single product page actions. Demo You can see a demo of the plugin here. Requirements WooCommerce Plugin setup Install the plugin—visit the installation tab for more info Use the plugin’s option page, located in the WooCommerce menu, to set up the plugin Support Feel free to use the support forum, and we will get back to you as soon as possible. Want even better related products? We recommend trying the Related Products feature that is built-in to PeachPay, an all-in-one checkout and product recommendation solution engineered to increase sales.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C