
AW WooCommerce TIKI Shipping Security & Risk Analysis
wordpress.org/plugins/aw-woocommerce-tikiWoocommerce TIKI adalah Plugin khusus Woocommerce yang digunakan untuk mengintegrasikan ongkos kirim dengan total belanja calon konsumen Anda.
Is AW WooCommerce TIKI Shipping Safe to Use in 2026?
Generally Safe
Score 85/100AW WooCommerce TIKI Shipping has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'aw-woocommerce-tiki' plugin version 4.0.3 presents a generally good security posture, with no recorded vulnerabilities or CVEs. The static analysis shows a commendable absence of dangerous functions, raw SQL queries, file operations, and a significant attack surface. All identified SQL queries utilize prepared statements, which is a strong indicator of secure database interaction. The plugin also implements nonce checks and some capability checks, further reinforcing its security measures.
However, there are notable areas for improvement. The plugin exhibits a concerning 52% rate of properly escaped output, indicating a potential risk of Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the taint analysis reveals three flows with unsanitized paths, which, despite not being classified as critical or high severity, warrants attention as it suggests potential for unexpected behavior or information disclosure if these paths are ever exposed.
While the plugin's vulnerability history is clean, the issues identified in the static and taint analysis suggest a reactive rather than proactive approach to security. The lack of critical or high-severity findings is positive, but the presence of unescaped output and unsanitized paths indicates that the plugin could benefit from more rigorous input validation and output sanitization practices.
Key Concerns
- High percentage of unescaped output
- Taint flows with unsanitized paths
AW WooCommerce TIKI Shipping Security Vulnerabilities
AW WooCommerce TIKI Shipping Release Timeline
AW WooCommerce TIKI Shipping Code Analysis
Output Escaping
Data Flow Analysis
AW WooCommerce TIKI Shipping Attack Surface
WordPress Hooks 13
Maintenance & Trust
AW WooCommerce TIKI Shipping Maintenance & Trust
Maintenance Signals
Community Trust
AW WooCommerce TIKI Shipping Alternatives
AW WooCommerce POS Shipping
aw-woocommerce-pos
Woocommerce POS adalah Plugin khusus Woocommerce yang digunakan untuk mengintegrasikan ongkos kirim dengan total belanja calon konsumen Anda.
The Courier Guy Shipping for WooCommerce
the-courier-guy
This is the official WooCommerce extension to ship products using The Courier Guy.
AppScenic – Smart AI Dropshipping
appscenic
Expand your store catalogue with no upfront inventory cost. Source high-quality products from verified domestic suppliers and use AI in the process.
CDEKDelivery
cdekdelivery
Integration with CDEK delivery for your WooCommerce store.
DHL eCommerce (Benelux) for WooCommerce
dhlpwc
DHL eCommerce (Benelux) presents: The official DHL eCommerce for WooCommerce plugin to automate your e-commerce shipping process.
AW WooCommerce TIKI Shipping Developer Profile
3 plugins · 320 total installs
How We Detect AW WooCommerce TIKI Shipping
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/aw-woocommerce-tiki/assets/css/admin.css/wp-content/plugins/aw-woocommerce-tiki/assets/js/admin.min.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/admin.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/shipping.min.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/shipping.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/shipping.min.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/shipping.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/admin.min.js/wp-content/plugins/aw-woocommerce-tiki/assets/js/admin.jsaw-woocommerce-tiki/assets/js/shipping.min.js?ver=aw-woocommerce-tiki/assets/js/shipping.js?ver=aw-woocommerce-tiki/assets/js/admin.min.js?ver=aw-woocommerce-tiki/assets/js/admin.js?ver=aw-woocommerce-tiki/assets/css/admin.css?ver=HTML / DOM Fingerprints
woocommerce-tiki-shipping-fields<!-- AW WooCommerce TIKI Shipping --><!-- AW WooCommerce TIKI Shipping Admin -->data-nonceagenwebsite_woocommerce_tiki_paramsagenwebsite_tiki_admin_params