
AddWeb Woo Multi-address Security & Risk Analysis
wordpress.org/plugins/addweb-woo-multi-addressManage and use multiple billing and shipping addresses in WooCommerce — with full support for classic, Elementor, and block-based checkouts.
Is AddWeb Woo Multi-address Safe to Use in 2026?
Generally Safe
Score 100/100AddWeb Woo Multi-address has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "addweb-woo-multi-address" plugin, version 1.0.0, exhibits a mixed security posture. On the positive side, it demonstrates good practices by heavily utilizing prepared statements for SQL queries (96%) and proper output escaping (96%). The absence of known CVEs and external HTTP requests are also positive indicators. However, there are notable concerns regarding the attack surface and taint analysis results.
The plugin exposes 18 AJAX handlers, with a significant 4 of them lacking authentication checks. This presents a direct entry point for potential attackers. The taint analysis further highlights two flows with unsanitized paths, classified as high severity. While not explicitly a critical issue, these high-severity taint flows, coupled with the unprotected AJAX handlers, suggest a risk of potential remote code execution or data leakage if these pathways are exploited.
The plugin's vulnerability history is clean, with no recorded CVEs. This suggests either a good security track record or that it hasn't been a target of significant historical vulnerability discovery. However, this cannot solely mitigate the risks identified in the static analysis. The combination of a substantial attack surface with unprotected AJAX endpoints and high-severity taint flows necessitates careful consideration, despite the positive aspects like high SQL preparedness and output escaping.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
AddWeb Woo Multi-address Security Vulnerabilities
AddWeb Woo Multi-address Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
AddWeb Woo Multi-address Attack Surface
AJAX Handlers 18
WordPress Hooks 34
Scheduled Events 2
Maintenance & Trust
AddWeb Woo Multi-address Maintenance & Trust
Maintenance Signals
Community Trust
AddWeb Woo Multi-address Alternatives
Happy Coders Multi Address for WooCommerce
happycoders-multiple-addresses
Allow logged-in WooCommerce customers to manage multiple addresses in an address book and select them easily during checkout.
Multiple Billing and Shipping Addresses For WooCommerce
multiple-addresses-for-woocommerce
The plugin lets customers save and select multiple billing/shipping addresses at checkout, speeding up the process and improving the experience.
Woo-Autocomplete
woo-autocomplete
This plugin auto populate both the billing address and the shipping address when the user start typing his address. The woocommerce plugin needs to be …
OBULKiT – Bulk Edit WooCommerce Orders
ithemeland-woo-bulk-orders-editing-lite
Streamline order management by editing and updating multiple orders simultaneously, ensuring smooth operations.
DS Woocommerce Order Email Export
ds-woocommerce-order-email-export
An essential plugin to export customer's emails and other information from admin panel.
AddWeb Woo Multi-address Developer Profile
6 plugins · 80 total installs
How We Detect AddWeb Woo Multi-address
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/addweb-woo-multi-address/assets/css/admin-style.css/wp-content/plugins/addweb-woo-multi-address/assets/css/style.css/wp-content/plugins/addweb-woo-multi-address/assets/js/admin-script.js/wp-content/plugins/addweb-woo-multi-address/assets/js/frontend-script.js/wp-content/plugins/addweb-woo-multi-address/assets/js/admin-script.js/wp-content/plugins/addweb-woo-multi-address/assets/js/frontend-script.jsaddweb-woo-multi-address/assets/css/admin-style.css?ver=addweb-woo-multi-address/assets/css/style.css?ver=addweb-woo-multi-address/assets/js/admin-script.js?ver=addweb-woo-multi-address/assets/js/frontend-script.js?ver=HTML / DOM Fingerprints
billing-selectaddwwomu_manage_address_sectionaddwwomu-address-formaddwwomu_edit_address_popupaddwwomu-address-itemaddwwomu_address_manager_wrapperaddwwomu-shipping-address-containeraddwwomu-billing-address-container+1 moredata-noncedata-user-idaddwwomu_frontend_paramsaddwwomu_admin_params