
Cargo Shipping Location for WooCommerce Security & Risk Analysis
wordpress.org/plugins/cargo-shipping-location-for-woocommerceThe new plugin for Cargo express & pickups delivery orders from WooCommerce.
Is Cargo Shipping Location for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Cargo Shipping Location for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'cargo-shipping-location-for-woocommerce' plugin version 5.6 exhibits a mixed security posture. While the absence of known CVEs and a generally good approach to SQL prepared statements and output escaping are positive indicators, several areas raise concerns. The presence of 11 unprotected AJAX handlers significantly broadens the attack surface, creating potential entry points for malicious actors. The taint analysis, though showing no critical or high-severity unsanitized flows, did reveal 6 flows with unsanitized paths, which warrants attention as it indicates potential for data manipulation or unexpected behavior if not handled carefully.
Despite the lack of recorded historical vulnerabilities, the identified unprotected AJAX handlers are a tangible risk. The plugin's reliance on bundled libraries, specifically TCPDF, also introduces a potential indirect risk if this library has known unpatched vulnerabilities outside of the plugin's direct CVE history. Overall, the plugin demonstrates some good security practices, but the significant number of unprotected AJAX entry points and the unsanitized taint flows are weaknesses that could be exploited. A proactive approach to securing these entry points is recommended to improve its security posture.
Key Concerns
- Unprotected AJAX handlers
- Taint flows with unsanitized paths
- Bundled library (TCPDF)
Cargo Shipping Location for WooCommerce Security Vulnerabilities
Cargo Shipping Location for WooCommerce Release Timeline
Cargo Shipping Location for WooCommerce Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Cargo Shipping Location for WooCommerce Attack Surface
AJAX Handlers 22
REST API Routes 1
WordPress Hooks 47
Maintenance & Trust
Cargo Shipping Location for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Cargo Shipping Location for WooCommerce Alternatives
Shiprocket
shiprocket
Auto Sync your Woocommerce store orders & ship them at lowest shipping rates. Automate your shipping, save time & money.
Яндекс Доставка
yandex-go-delivery
Яндекс Доставка — это сервис, который помогает бизнесам отправлять заказы клиентам внутри города и между городами.
Shipping Additional Days for WooCommerce
woo-shipping-additional-days
Allows you to set additional days to your delivery date into Products and Shipping Classes.
Štíteknabalík.cz
foxdeli
Looking for a reliable label printing solution? Štíteknabalík.cz will help you!
Advanced Shipment Tracking for WooCommerce
woo-advanced-shipment-tracking
Add shipment tracking info to WooCommerce orders, send tracking numbers to customers via email, and let them track deliveries from My Account.
Cargo Shipping Location for WooCommerce Developer Profile
1 plugin · 200 total installs
How We Detect Cargo Shipping Location for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/css/cargo-shipping-location.css/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/cargo-shipping-location.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/cargo-shipping-location-admin.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/shipments.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/shipping_options.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/cargo-shipping-location.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/cargo-shipping-location-admin.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/shipments.js/wp-content/plugins/cargo-shipping-location-for-woocommerce/assets/js/shipping_options.jscargo-shipping-location-for-woocommerce/assets/css/cargo-shipping-location.css?ver=cargo-shipping-location-for-woocommerce/assets/js/cargo-shipping-location.js?ver=cargo-shipping-location-for-woocommerce/assets/js/cargo-shipping-location-admin.js?ver=cargo-shipping-location-for-woocommerce/assets/js/shipments.js?ver=cargo-shipping-location-for-woocommerce/assets/js/shipping_options.js?ver=HTML / DOM Fingerprints
cslfw-pickup-locations<!-- cargo-shipping-location-for-woocommerce --><!-- START CSLFW -->data-cslfw-cargo-api-keydata-cslfw-cargo-point-finder-urlcslfw_paramsCargoShippingLocation[cslfw_delivery_locations]