
WooODT Lite – Delivery & pickup date time location for WooCommerce Security & Risk Analysis
wordpress.org/plugins/byconsole-woo-order-delivery-timeWooODT Lite is a WooCommerce Delivery & Pickup Date Time extension that gives the facility of selecting delivery/pickup date and time/time slot o …
Is WooODT Lite – Delivery & pickup date time location for WooCommerce Safe to Use in 2026?
Use With Caution
Score 61/100WooODT Lite – Delivery & pickup date time location for WooCommerce has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The "byconsole-woo-order-delivery-time" plugin v2.5.2 exhibits a mixed security posture. Static analysis reveals good practices in several areas, including a complete lack of dangerous functions, all SQL queries using prepared statements, and a high percentage of output escaping. Furthermore, the plugin has no identified unsanitized paths in taint analysis and a relatively small attack surface consisting of one AJAX handler and one shortcode, with no unprotected entry points identified in the static analysis. However, the plugin's vulnerability history is a significant concern. With four known CVEs, one of which remains unpatched, and the presence of high and medium severity vulnerabilities in the past, this indicates a pattern of security weaknesses. The common vulnerability types listed (Insufficient Verification of Data Authenticity, Generation of Error Message Containing Sensitive Information, Missing Authorization, and Cross-site Scripting) are all critical areas for plugin security. While recent static analysis shows improvements, the historical data suggests a need for increased vigilance and potentially more robust security testing in future development cycles.
Key Concerns
- Unpatched high severity CVE found
- History of multiple medium severity CVEs
- History of Cross-site Scripting vulnerabilities
- History of Missing Authorization vulnerabilities
- Bundled library Select2
WooODT Lite – Delivery & pickup date time location for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
WooODT Lite <= 2.5.2 - Unauthenticated Payment Bypass
WooODT Lite – Delivery & pickup date time location for WooCommerce <= 2.5.1 - Unauthenticated Full Path Dsiclosure
WooODT Lite <= 2.4.6 - Missing Authorization to Arbitrary Options Update
WooODT Lite <= 2.4.6 - Reflected Cross-Site Scripting
WooODT Lite – Delivery & pickup date time location for WooCommerce Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
WooODT Lite – Delivery & pickup date time location for WooCommerce Attack Surface
AJAX Handlers 1
Shortcodes 1
WordPress Hooks 32
Maintenance & Trust
WooODT Lite – Delivery & pickup date time location for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
WooODT Lite – Delivery & pickup date time location for WooCommerce Alternatives
Delivery & Pickup Date Time for WooCommerce
woo-delivery
Gives the facility of selecting delivery/pickup/both date/time/both at order checkout page.
AICOSO Pickup and Delivery Date Time for WooCommerce
aicoso-pickup-and-delivery-for-woocommerce
A comprehensive WooCommerce extension that enables customers to choose between home delivery and pickup options with flexible scheduling capabilities.
Order Delivery Date And Time
order-delivery-date-and-time
Order Delivery Date And Time plugin lets customers select delivery/pickup dates and times at checkout page.
Chwazi – Delivery & Pickup Scheduling for WooCommerce
delivery-and-pickup-scheduling-for-woocommerce
Empower customers to select their preferred delivery or pickup time using a convenient datetime picker integrated into the WooCommerce checkout page.
PiWeb Delivery & Pickup Date Time for WooCommerce
pi-woocommerce-order-date-time-and-type
WooCommerce delivery date | delivery time | pickup date | pickup time | pickup location
WooODT Lite – Delivery & pickup date time location for WooCommerce Developer Profile
5 plugins · 560 total installs
How We Detect WooODT Lite – Delivery & pickup date time location for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/byconsole-woo-order-delivery-time/css/byconsole-woo-order-delivery-time.css/wp-content/plugins/byconsole-woo-order-delivery-time/js/byconsole-woo-order-delivery-time.jsbyconsole-woo-order-delivery-time/css/byconsole-woo-order-delivery-time.css?ver=byconsole-woo-order-delivery-time/js/byconsole-woo-order-delivery-time.js?ver=HTML / DOM Fingerprints
byconsolewooodt-widget-formbyconsolewooodt-widget-wrapperdata-plugin-name="byconsole-woo-order-delivery-time"data-plugin-version="2.5.2"ByConsoleWooODTLite