Table rate shipping for WooCommerce Security & Risk Analysis

wordpress.org/plugins/advanced-table-rate-shipping-for-woocommerce

Table rate shipping a addon plugin for WooCommerce shipping.

200 active installs v2.1.5 PHP + WP 4.4.0+ Updated Aug 8, 2025
delivery-datefree-shippingweight-based-shippingwoocommerce-shippingwoocommerce-shipping-rates
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Table rate shipping for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Table rate shipping for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7mo ago
Risk Assessment

The static analysis of "advanced-table-rate-shipping-for-woocommerce" v2.1.5 indicates a generally strong security posture. The plugin demonstrates good practices by not exposing any critical entry points like AJAX handlers, REST API routes, or shortcodes without authentication. Furthermore, all SQL queries are properly prepared, and the majority of output is correctly escaped, mitigating common injection vulnerabilities. The absence of any known CVEs and a clean vulnerability history also points to a well-maintained and secure plugin over time.

However, there are a few areas that warrant attention. The complete lack of nonce checks, while not directly tied to any exposed entry points in this analysis, is a concerning omission. A robust security strategy typically involves nonce checks on all form submissions and AJAX requests, even if they are authenticated. Additionally, while the external HTTP request is not inherently a vulnerability, it represents a potential attack vector if the remote endpoint is compromised or if the data being sent is not properly sanitized, though no taint flows were detected in this analysis. The limited capability checks also suggest that access control might be less granular than ideal.

In conclusion, this plugin appears to be quite secure based on the provided data, with a strong emphasis on preventing common web vulnerabilities. The primary concerns lie in the absence of comprehensive nonce checks and the potential risks associated with the single external HTTP request. The lack of past vulnerabilities is a very positive sign, suggesting diligence from the developers.

Key Concerns

  • No nonce checks present
  • Limited capability checks
  • 1 external HTTP request
Vulnerabilities
None known

Table rate shipping for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Table rate shipping for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
6 prepared
Unescaped Output
4
34 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared6 total queries

Output Escaping

89% escaped38 total outputs
Attack Surface

Table rate shipping for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 24
actionplugins_loadedaco-table-rate-shipping.php:27
filterwoocommerce_shipping_methodsaco-table-rate-shipping.php:106
actionbefore_woocommerce_initaco-table-rate-shipping.php:114
actionrest_api_initincludes\class-acotrs-api.php:56
actionadmin_enqueue_scriptsincludes\class-acotrs-backend.php:139
actionadmin_enqueue_scriptsincludes\class-acotrs-backend.php:140
actionadmin_menuincludes\class-acotrs-backend.php:146
actionadmin_noticesincludes\class-acotrs-backend.php:148
actionwoocommerce_initincludes\class-acotrs-compatibility.php:27
actionwoocommerce_after_shipping_calculatorincludes\class-acotrs-public.php:61
actionwoocommerce_cart_calculate_feesincludes\class-acotrs-public.php:62
actionwoocommerce_after_shipping_rateincludes\class-acotrs-public.php:63
filteracotrs_calculated_table_rate_otheroptionsincludes\class-acotrs-shipping.php:140
filterwoocommerce_shipping_chosen_methodincludes\class-acotrs-shipping.php:141
filterwoocommerce_package_ratesincludes\class-acotrs-shipping.php:142
filteracotrs_calculated_table_rate_return_arrayincludes\class-acotrs-shipping.php:143
filteracotrs_custom_restrictionincludes\class-acotrs-shipping.php:144
filteracotrs_conditional_tertiary_subtotalincludes\compatibility\compbl.wpml.php:20
filteracotrs_settings_shipping_classincludes\compatibility\compbl.wpml.php:21
filteracotrs_comparison_tertiary_productincludes\compatibility\compbl.wpml.php:22
filteracotrs_comparison_tertiary_categoryincludes\compatibility\compbl.wpml.php:23
filteracotrs_shipping_rate_labelincludes\compatibility\compbl.wpml.php:24
filteracotrs_shipping_rate_descriptionincludes\compatibility\compbl.wpml.php:25
filterwoocommerce_package_ratesincludes\compatibility\compbl.wpml.php:26
Maintenance & Trust

Table rate shipping for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedAug 8, 2025
PHP min version
Downloads11K

Community Trust

Rating90/100
Number of ratings11
Active installs200
Developer Profile

Table rate shipping for WooCommerce Developer Profile

acowebs

13 plugins · 74K total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
14 days
View full developer profile
Detection Fingerprints

How We Detect Table rate shipping for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/css/acotrs-backend.css/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/css/acotrs-frontend.css/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/js/acotrs-backend.js/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/js/acotrs-frontend.js
Script Paths
/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/js/acotrs-backend.js/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/js/acotrs-frontend.js
Version Parameters
/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/css/acotrs-backend.css?ver=/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/css/acotrs-frontend.css?ver=/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/js/acotrs-backend.js?ver=/wp-content/plugins/advanced-table-rate-shipping-for-woocommerce/assets/js/acotrs-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
acotrs-backend-wrapper
Data Attributes
data-plugin-name="ACOTRS"
JS Globals
ACOTRS
FAQ

Frequently Asked Questions about Table rate shipping for WooCommerce