Advanced Shipping Manager Security & Risk Analysis

wordpress.org/plugins/asm-manager

Advanced Shipping Manager delivers full control over ALL of your shipping rules and methods, no matter how complicated your challenge may be!

30 active installs v1.4.0 PHP 7.0+ WP 6.0+ Updated Jun 15, 2025
advanced-shippingadvanced-shipping-ratesshipping-rateswoocommerce-shippingwoocommerce-shipping-rates
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Advanced Shipping Manager Safe to Use in 2026?

Generally Safe

Score 100/100

Advanced Shipping Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The "asm-manager" v1.4.0 plugin exhibits a generally strong security posture, with no recorded vulnerabilities or CVEs in its history. Static analysis reveals excellent adherence to secure coding practices, particularly in the absence of dangerous functions and the consistent use of prepared statements for all SQL queries. The high percentage of properly escaped output (85%) further mitigates the risk of cross-site scripting vulnerabilities. Furthermore, the plugin demonstrates a conscious effort to implement security measures, including nonce and capability checks, on its entry points, which are essential for preventing unauthorized actions.

Key Concerns

  • Flows with unsanitized paths identified
  • File operations present without explicit security review
  • External HTTP requests present without explicit security review
  • Output escaping not 100% perfect
Vulnerabilities
None known

Advanced Shipping Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Advanced Shipping Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
47 escaped
Nonce Checks
1
Capability Checks
1
File Operations
2
External Requests
2
Bundled Libraries
0

Output Escaping

85% escaped55 total outputs
Data Flows
3 unsanitized

Data Flow Analysis

3 flows3 with unsanitized paths
render_import_tab (includes\asmplsww_shipping_method_declear.php:139)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Advanced Shipping Manager Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 3

authwp_ajax_asm_address_field_changedasmplsww-settings.php:99
noprivwp_ajax_asm_address_field_changedasmplsww-settings.php:100
authwp_ajax_submit_deactivation_feedbackasmplsww.php:62
WordPress Hooks 21
actionwoocommerce_shipping_initasmplsww-settings.php:19
actionwoocommerce_shipping_methodsasmplsww-settings.php:20
actionwoocommerce_before_calculate_totalsasmplsww-settings.php:30
actionwoocommerce_removed_couponasmplsww-settings.php:92
actionwoocommerce_applied_couponasmplsww-settings.php:93
actionadmin_initasmplsww.php:47
actionbefore_woocommerce_initasmplsww.php:49
actionadmin_enqueue_scriptsasmplsww.php:60
actionwp_enqueue_scriptsasmplsww.php:61
actionadmin_noticesasmplsww.php:106
filterwoocommerce_product_data_tabsincludes\asmplsww_admin_field.php:13
actionwoocommerce_product_data_panelsincludes\asmplsww_admin_field.php:16
actionwoocommerce_process_product_metaincludes\asmplsww_admin_field.php:18
filterwoocommerce_product_data_tabsincludes\asmplsww_product_field.php:12
actionwoocommerce_product_data_panelsincludes\asmplsww_product_field.php:14
actionwoocommerce_process_product_metaincludes\asmplsww_product_field.php:16
filterhttp_request_timeoutincludes\asmplsww_shipping_api.php:8
actionplugins_loadedincludes\asmplsww_shipping_method_declear.php:24
actionadmin_menuincludes\asmplsww_shipping_method_declear.php:26
filterwoocommerce_shipping_methodsincludes\asmplsww_shipping_method_declear.php:40
actionasm_render_iframeincludes\asmplsww_xml_data.php:29
Maintenance & Trust

Advanced Shipping Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJun 15, 2025
PHP min version7.0
Downloads5K

Community Trust

Rating100/100
Number of ratings5
Active installs30
Developer Profile

Advanced Shipping Manager Developer Profile

Advanced Shipping Manager

1 plugin · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Advanced Shipping Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/asm-manager/assets/css/asm.css/wp-content/plugins/asm-manager/assets/css/asm-admin.css/wp-content/plugins/asm-manager/assets/js/asm-admin.js/wp-content/plugins/asm-manager/assets/js/asm-script.js
Version Parameters
asm-css?ver=asm-admin.css?ver=asm-admin.js?ver=asm-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
asmplsww_custom_product_data
Data Attributes
id="asmplsww_custom_product_data"id="asmplsww_dimensions"name="asmplsww_dimensions"id="asmplsww_free_shipping"name="asmplsww_free_shipping"
JS Globals
asm_vars
FAQ

Frequently Asked Questions about Advanced Shipping Manager