
Baggage Freight Shipping Australia Security & Risk Analysis
wordpress.org/plugins/baggage-freightAustralia's Best Wordpress Woocommerce Courier Comparison System and Freight Plugin for Domestic and International Shipments.
Is Baggage Freight Shipping Australia Safe to Use in 2026?
Use With Caution
Score 62/100Baggage Freight Shipping Australia has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The 'baggage-freight' plugin v0.1.0 presents a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and avoids bundled libraries. However, significant concerns arise from critical vulnerabilities, both historically and indicated in the static analysis. The lack of nonce checks and capability checks across its entry points is a major weakness, leaving it susceptible to various attacks. While the attack surface is small, the absence of robust security checks on these entry points amplifies the risk.
The static analysis reveals a critical taint flow with unsanitized paths, indicating a potential for directory traversal or similar path manipulation vulnerabilities. The presence of file operations and external HTTP requests, combined with a very low percentage of properly escaped output, suggests that data processed by these functions could be vulnerable to injection attacks or cross-site scripting (XSS) if not handled with extreme care. The vulnerability history further compounds these concerns, showing a past critical vulnerability related to unrestricted file uploads, and a currently unpatched critical vulnerability.
In conclusion, while the plugin benefits from secure SQL practices and a limited attack surface, the recurring critical vulnerabilities and the current lack of essential security checks (nonces, capabilities) and proper output escaping create a substantial security risk. The unpatched critical vulnerability is the most immediate and severe concern, demanding urgent attention.
Key Concerns
- Currently unpatched critical CVE
- Critical severity taint flow
- No nonce checks
- No capability checks
- Low output escaping percentage
- File operations present
- External HTTP requests present
Baggage Freight Shipping Australia Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Baggage Freight Shipping Australia <= 0.1.0 - Arbitrary File Upload
Baggage Freight Shipping Australia Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Baggage Freight Shipping Australia Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Baggage Freight Shipping Australia Maintenance & Trust
Maintenance Signals
Community Trust
Baggage Freight Shipping Australia Alternatives
Smart Send Shipping for WooCommerce
woocommerce-smart-send-australian-shipping
Australian merchants can get real-time shipping quotes, order fulfillment and shipping package packing for their WooCommerce website.
Shippit for WooCommerce
shippit-simplified-australia-shipping
Multi-carrier shipping technology.
Shipit
shipit
Shipit Calculator Mensajeros de envío
eShipper Commerce
eshipper-commerce
Integrate your eCommerce platforms, automate shipping, and save on all carriers with eShipper.
IH Shipping for Australia Post
ih-shipping-for-auspost
A shipping integration that adds real-time Australia Post calculations (Parcel Post) with volumetric box packing.
Baggage Freight Shipping Australia Developer Profile
1 plugin · 10 total installs
How We Detect Baggage Freight Shipping Australia
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/baggage-freight/css/baggage.css/wp-content/plugins/baggage-freight/js/baggage.js/wp-content/plugins/baggage-freight/js/baggage.jsbaggage-freight/css/baggage.css?ver=baggage-freight/js/baggage.js?ver=HTML / DOM Fingerprints
window.bf_weightwindow.bf_lengthwindow.bf_widthwindow.bf_heightwindow.bf_unitwindow.bf_description+39 more[baggage_link][baggage_postorder]