Automate Dropshipping for B2BDropshipper(WWTech) Security & Risk Analysis

wordpress.org/plugins/automate-dropshipping-for-b2bdropshipperwwtech

Automate Dropshipping for B2BDropshipper(WWTech) plugin provides fully integration with woocommerce to automate import products and manage orders.

10 active installs v3.0.7 PHP + WP + Updated Feb 2, 2021
dropshipperdropshippingb2be-commercestorewoocoomerce-dropshipping
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Automate Dropshipping for B2BDropshipper(WWTech) Safe to Use in 2026?

Generally Safe

Score 85/100

Automate Dropshipping for B2BDropshipper(WWTech) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "automate-dropshipping-for-b2bdropshipperwwtech" plugin v3.0.7 presents a significant security risk due to a large attack surface with no authentication checks on any of its entry points. All 13 AJAX handlers lack proper authorization, meaning any unauthenticated user could potentially trigger these functions, leading to unauthorized actions or information disclosure. While the plugin demonstrates good practices in SQL query handling by using prepared statements and has no recorded vulnerability history, the absence of security measures on its AJAX endpoints is a critical oversight. The moderate rate of proper output escaping (58%) also suggests a potential for Cross-Site Scripting (XSS) vulnerabilities, although no specific taint flows were identified in this analysis.

Despite the positive aspects of its SQL handling and clean vulnerability record, the overwhelming number of unprotected AJAX endpoints renders the plugin highly susceptible to attacks. This lack of basic security checks on its primary interaction points is a major concern. The plugin's overall security posture is weakened by this critical deficiency, requiring immediate attention to implement proper authentication and authorization for all its AJAX handlers to mitigate potential exploitation.

Key Concerns

  • Unprotected AJAX handlers
  • Low percentage of properly escaped output
Vulnerabilities
None known

Automate Dropshipping for B2BDropshipper(WWTech) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Automate Dropshipping for B2BDropshipper(WWTech) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
84
116 escaped
Nonce Checks
1
Capability Checks
1
File Operations
2
External Requests
19
Bundled Libraries
2

Bundled Libraries

Select2jQuery3.5.1

SQL Query Safety

100% prepared4 total queries

Output Escaping

58% escaped200 total outputs
Attack Surface
13 unprotected

Automate Dropshipping for B2BDropshipper(WWTech) Attack Surface

Entry Points13
Unprotected13

AJAX Handlers 13

authwp_ajax_klock_add_new_products_cronautomate-dropshipping.php:55
noprivwp_ajax_klock_add_new_products_cronautomate-dropshipping.php:56
authwp_ajax_klock_manage_removed_productautomate-dropshipping.php:57
noprivwp_ajax_klock_manage_removed_productautomate-dropshipping.php:58
authwp_ajax_klockjatten_order_status_change_cronautomate-functions.php:636
noprivwp_ajax_klockjatten_order_status_change_cronautomate-functions.php:637
authwp_ajax_klockjatten_order_shipped_mail_senderautomate-functions.php:743
noprivwp_ajax_klockjatten_order_shipped_mail_senderautomate-functions.php:744
noprivwp_ajax_count_klock_add_productautomate-functions.php:778
authwp_ajax_count_klock_add_productautomate-functions.php:779
noprivwp_ajax_klock_upload_brand_product_on_demand_2automate-functions.php:880
authwp_ajax_klock_upload_brand_product_on_demand_2automate-functions.php:881
authwp_ajax_klock_upload_brand_product_on_demandautomate-functions.php:1081
WordPress Hooks 26
actionin_plugin_update_message-automate-dropshipping-for-b2bdropshipperwwtech/automate-dropshipping.phpautomate-dropshipping.php:26
actionplugins_loadedautomate-dropshipping.php:37
actionadmin_noticesautomate-dropshipping.php:41
actionadmin_enqueue_scriptsautomate-dropshipping.php:52
actionadmin_menuautomate-dropshipping.php:53
filterwoocommerce_add_to_cart_validationautomate-functions.php:6
actionwoocommerce_order_status_processingautomate-functions.php:101
actionwoocommerce_payment_completeautomate-functions.php:103
actionwoocommerce_admin_order_data_after_billing_addressautomate-functions.php:327
actionwoocommerce_admin_order_data_after_order_detailsautomate-functions.php:397
filterupload_mimesautomate-functions.php:455
actionwoocommerce_view_orderautomate-functions.php:459
actionwoocommerce_email_order_metaautomate-functions.php:639
actionwoocommerce_product_options_inventory_product_dataautomate-functions.php:1679
actionwoocommerce_process_product_metaautomate-functions.php:1681
filteradmin_post_thumbnail_htmlautomate-functions.php:1814
actionsave_postautomate-functions.php:1816
actionadmin_initbrand-name.php:7
actionadmin_initgeneral-settings.php:5
actioninitincludes\class-featured-image-by-url-common.php:8
filterwp_get_attachment_image_srcincludes\class-featured-image-by-url-common.php:10
actionadmin_initincludes\class-featured-image-by-url-common.php:13
filterwoocommerce_product_get_image_idincludes\class-featured-image-by-url-common.php:17
filterwp_get_attachment_image_srcincludes\class-featured-image-by-url-common.php:359
actionadmin_initpayment-page.php:5
actionadmin_initsettings.php:6
Maintenance & Trust

Automate Dropshipping for B2BDropshipper(WWTech) Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedFeb 2, 2021
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Automate Dropshipping for B2BDropshipper(WWTech) Developer Profile

midriff

3 plugins · 110 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Automate Dropshipping for B2BDropshipper(WWTech)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/css/backend.css/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/css/font-awesome.min.css/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/css/select2.min.css/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/js/select2.min.js/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/js/jquery-3.5.1.min.js
Script Paths
/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/automate-dropshipping.php
Version Parameters
/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/css/backend.css?ver=/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/css/font-awesome.min.css?ver=/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/css/select2.min.css?ver=/wp-content/plugins/automate-dropshipping-for-b2bdropshipperwwtech/assets/js/select2.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
klock_load_processklock_loader
HTML Comments
<!-- Activation Hook --><!-- Deactivation Hook --><!-- Deletion Hook --><!-- Include css files for wp admin -->+3 more
Data Attributes
data-action='klock_add_new_products_cron'
JS Globals
klockjatten_woocommerce_missing_wc_noticeklockjattenUpgradeNotificationklockjatten_alert_initKlockjattenklock_uninstallklock_obj+2 more
REST Endpoints
/wp-json/automate-dropshipping-for-b2bdropshipperwwtech/v1/some-endpoint
FAQ

Frequently Asked Questions about Automate Dropshipping for B2BDropshipper(WWTech)