
Colissimo Delivery Integration Security & Risk Analysis
wordpress.org/plugins/colissimo-delivery-integrationUne intégration complète de Colissimo dans WooCommerce.
Is Colissimo Delivery Integration Safe to Use in 2026?
Generally Safe
Score 92/100Colissimo Delivery Integration has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "colissimo-delivery-integration" plugin version 3.8.3 exhibits a concerning security posture primarily due to its complete lack of input validation and output escaping, despite having a minimal attack surface reported. The static analysis reveals that none of the five SQL queries utilize prepared statements, and similarly, the single output identified is not properly escaped. This combination presents a significant risk of SQL injection and Cross-Site Scripting (XSS) vulnerabilities, as any user-supplied data passed to these functions could be maliciously crafted. The absence of any capability checks or nonce checks on the reported zero entry points, while seemingly positive, doesn't mitigate the risks associated with vulnerable internal code paths that might not be directly exposed as entry points but could be triggered indirectly.
The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive indicator, suggesting a general diligence in addressing known security flaws. However, the lack of historical vulnerabilities does not negate the critical code-level issues identified in the static analysis. The absence of taint analysis flows is likely a consequence of the limited attack surface or potentially limitations in the analysis tool, but it doesn't offer reassurance given the unescaped outputs and raw SQL.
In conclusion, while the plugin has a clean vulnerability history and a seemingly small attack surface, the static analysis highlights critical weaknesses in handling data. The widespread use of raw SQL without prepared statements and the lack of output escaping create a high risk of injection attacks. The plugin's security is fundamentally undermined by these basic coding oversights, which need immediate attention.
Key Concerns
- Raw SQL queries without prepared statements (5)
- No output escaping for identified outputs (1)
- No capability checks found
- No nonce checks found
Colissimo Delivery Integration Security Vulnerabilities
Colissimo Delivery Integration Code Analysis
SQL Query Safety
Output Escaping
Colissimo Delivery Integration Attack Surface
WordPress Hooks 1
Maintenance & Trust
Colissimo Delivery Integration Maintenance & Trust
Maintenance Signals
Community Trust
Colissimo Delivery Integration Alternatives
Colissimo Officiel : Méthodes de livraison pour WooCommerce
colissimo-shipping-methods-for-woocommerce
Ce plugin permet d'utiliser les méthodes de livraison Colissimo dans WooCommerce
MyParcel
woocommerce-myparcel
Export your WooCommerce orders to MyParcel (www.myparcel.nl) and print labels directly from the WooCommerce admin
DPD Baltic Shipping
woo-shipping-dpd-baltic
Shipping extension for WooCommerce on WordPress of DPD Baltics. Manage your national and international shipments easily.
EasyParcel Shipping– All-in-one Shipping Solution, Real-Time Shipping Rates
easyparcel-shipping
Seamless WooCommerce shipping solution, cheapeast courier options, real-time shipping rates for Malaysia and Singapore.
Parcel2Go Shipping
parcel2go-shipping
Create shipments from WooCommerce admin via the Parcel2Go API: get quotes, book services, and pay.
Colissimo Delivery Integration Developer Profile
2 plugins · 300 total installs
How We Detect Colissimo Delivery Integration
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/colissimo-delivery-integration/assets/css/custom.css/wp-content/plugins/colissimo-delivery-integration/assets/css/responsive.css/wp-content/plugins/colissimo-delivery-integration/assets/js/colissimo-admin.js/wp-content/plugins/colissimo-delivery-integration/assets/js/colissimo-frontend.js/wp-content/plugins/colissimo-delivery-integration/assets/js/colissimo-admin.js/wp-content/plugins/colissimo-delivery-integration/assets/js/colissimo-frontend.jscolissimo-delivery-integration/assets/css/custom.css?ver=colissimo-delivery-integration/assets/css/responsive.css?ver=colissimo-delivery-integration/assets/js/colissimo-admin.js?ver=colissimo-delivery-integration/assets/js/colissimo-frontend.js?ver=HTML / DOM Fingerprints
cdi-admin-notice