Colissimo Officiel : Méthodes de livraison pour WooCommerce Security & Risk Analysis

wordpress.org/plugins/colissimo-shipping-methods-for-woocommerce

Ce plugin permet d'utiliser les méthodes de livraison Colissimo dans WooCommerce

10K active installs v2.8.2 PHP 7.4.0+ WP 4.7+ Updated Mar 4, 2026
colissimoshippingwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Colissimo Officiel : Méthodes de livraison pour WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Colissimo Officiel : Méthodes de livraison pour WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "colissimo-shipping-methods-for-woocommerce" v2.9.0 plugin presents a mixed security posture. While it demonstrates good practices in some areas, such as a low number of critical vulnerabilities and the use of prepared statements for a significant portion of its SQL queries, there are notable areas of concern. The plugin exposes a considerable attack surface through its AJAX handlers, with 8 out of 13 handlers lacking authentication checks. This significantly increases the risk of unauthorized actions being performed by unauthenticated users.

Furthermore, the taint analysis indicates a concerning number of unsanitized flows (6 out of 13 analyzed), although thankfully, none are flagged as critical or high severity. The presence of unsanitized paths, even if not currently leading to critical exploits, represents potential avenues for attackers to manipulate data or execute code. The plugin also bundles an outdated version of TCPDF (v1.0.004), which could harbor known or unknown vulnerabilities. The lack of any recorded historical vulnerabilities is positive, suggesting developers might be proactive, but it doesn't mitigate the risks identified in the current static analysis. Overall, the plugin has strengths in its SQL query handling and low historical CVE count, but the unauthenticated AJAX handlers and unsanitized taint flows are significant weaknesses that require attention.

Key Concerns

  • Unprotected AJAX handlers
  • Unsanitized taint flows detected
  • Bundled outdated library: TCPDF v1.0.004
Vulnerabilities
None known

Colissimo Officiel : Méthodes de livraison pour WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Colissimo Officiel : Méthodes de livraison pour WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
36
82 prepared
Unescaped Output
236
453 escaped
Nonce Checks
8
Capability Checks
52
File Operations
43
External Requests
1
Bundled Libraries
1

Bundled Libraries

TCPDF1.0.004

SQL Query Safety

69% prepared118 total queries

Output Escaping

66% escaped689 total outputs
Data Flows
6 unsanitized

Data Flow Analysis

13 flows6 with unsanitized paths
bulkLabelGeneration (admin\orders\lpc_orders_table.php:654)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
8 unprotected

Colissimo Officiel : Méthodes de livraison pour WooCommerce Attack Surface

Entry Points13
Unprotected8

AJAX Handlers 13

authwp_ajax_lpc_feedback_dismissedadmin\init.php:91
authwp_ajax_lpc-dismiss-noticeadmin\lpc_compatibility.php:60
authwp_ajax_lpc-dismiss-noticeadmin\lpc_compatibility.php:125
authwp_ajax_lpc_new_packagingadmin\lpc_settings_tab.php:244
authwp_ajax_lpc_switch_packagingsadmin\lpc_settings_tab.php:245
authwp_ajax_lpc_delete_packagingsadmin\lpc_settings_tab.php:246
authwp_ajax_lpc_order_affectadmin\orders\lpc_admin_order_affect.php:52
authwp_ajax_lpc_order_generate_labeladmin\orders\lpc_admin_order_banner.php:137
authwp_ajax_lpc_order_send_documentsadmin\orders\lpc_admin_order_banner.php:138
authwp_ajax_lpc_checkout_delivery_datepublic\checkout\lpc_checkout.php:21
noprivwp_ajax_lpc_checkout_delivery_datepublic\checkout\lpc_checkout.php:22
authwp_ajax_lpc_pickup_ajax_contentpublic\pickup\lpc_pickup_ajax_content.php:19
noprivwp_ajax_lpc_pickup_ajax_contentpublic\pickup\lpc_pickup_ajax_content.php:20
WordPress Hooks 127
actionwoocommerce_coupon_options_usage_restrictionadmin\coupons\lpc_coupons_restrictions.php:8
actionwoocommerce_coupon_options_saveadmin\coupons\lpc_coupons_restrictions.php:9
actionadmin_menuadmin\init.php:44
actionadmin_menuadmin\init.php:45
actionadmin_noticesadmin\init.php:86
filterset-screen-optionadmin\init.php:87
actionwoocommerce_settings_page_initadmin\init.php:88
actionadd_meta_boxesadmin\init.php:89
filterwoocommerce_screen_idsadmin\init.php:90
actionwoocommerce_page_wc-ordersadmin\init.php:92
actionload-woocommerce_page_wc-settingsadmin\lpc_compatibility.php:13
actionload-woocommerce_page_wc_colissimo_viewadmin\lpc_compatibility.php:18
actionload-woocommerce_page_wc-settingsadmin\lpc_compatibility.php:50
actionload-woocommerce_page_wc_colissimo_viewadmin\lpc_compatibility.php:55
actionload-woocommerce_page_wc-settingsadmin\lpc_compatibility.php:115
actionload-woocommerce_page_wc_colissimo_viewadmin\lpc_compatibility.php:120
filterwoocommerce_settings_tabs_arrayadmin\lpc_settings_tab.php:74
actionwoocommerce_admin_field_lpc_textadmin\lpc_settings_tab.php:82
actionload-woocommerce_page_wc-settingsadmin\lpc_settings_tab.php:87
actionload-woocommerce_page_wc-settingsadmin\lpc_settings_tab.php:89
actionload-woocommerce_page_wc-settingsadmin\lpc_settings_tab.php:91
actionload-woocommerce_page_wc-settingsadmin\lpc_settings_tab.php:93
actionload-woocommerce_page_wc-settingsadmin\lpc_settings_tab.php:95
actionwoocommerce_admin_field_videotutorialsadmin\lpc_settings_tab.php:99
actionwoocommerce_admin_field_feedbackadmin\lpc_settings_tab.php:103
actionwoocommerce_admin_field_lpc_midadmin\lpc_settings_tab.php:107
actionwoocommerce_admin_field_lpc_deposit_locationadmin\lpc_settings_tab.php:111
actionwoocommerce_admin_field_lpc_cuttoffadmin\lpc_settings_tab.php:112
actionwoocommerce_admin_field_lpc_date_formatadmin\lpc_settings_tab.php:113
filterwoocommerce_admin_settings_sanitize_option_lpc_pwd_webservicesadmin\lpc_settings_tab.php:117
actionwoocommerce_admin_field_onboardingadmin\lpc_settings_tab.php:121
actionwoocommerce_admin_field_lpcmodaladmin\lpc_settings_tab.php:125
actionwoocommerce_admin_field_mailtoadmin\lpc_settings_tab.php:129
actionwoocommerce_admin_field_telsupportadmin\lpc_settings_tab.php:133
actionwoocommerce_admin_field_lpcstatusadmin\lpc_settings_tab.php:137
actionwoocommerce_admin_field_lpcdocadmin\lpc_settings_tab.php:141
actionwoocommerce_admin_field_multiselectorderstatusadmin\lpc_settings_tab.php:145
actionwoocommerce_admin_field_selectorderstatusonlabelgeneratedadmin\lpc_settings_tab.php:149
actionwoocommerce_admin_field_selectorderstatusonpackagedeliveredadmin\lpc_settings_tab.php:156
actionwoocommerce_admin_field_selectorderstatusonbordereaugeneratedadmin\lpc_settings_tab.php:163
actionwoocommerce_admin_field_selectorderstatuspartialexpeditionadmin\lpc_settings_tab.php:170
actionwoocommerce_admin_field_selectorderstatusdeliveredadmin\lpc_settings_tab.php:177
actionwoocommerce_admin_field_numberinputwithweightunitadmin\lpc_settings_tab.php:184
actionwoocommerce_admin_field_addressCountryadmin\lpc_settings_tab.php:191
actionwoocommerce_admin_field_lpcCredentialsadmin\lpc_settings_tab.php:198
actionwoocommerce_admin_field_lpc_cboxadmin\lpc_settings_tab.php:205
actionwoocommerce_admin_field_lpc_contract_informationadmin\lpc_settings_tab.php:212
actionwoocommerce_admin_field_lpc_productsadmin\lpc_settings_tab.php:219
actionwoocommerce_admin_field_lpc_hazmatadmin\lpc_settings_tab.php:226
actionwoocommerce_admin_field_defaultcountryadmin\lpc_settings_tab.php:233
actionwoocommerce_admin_field_lpc_packaging_advancedadmin\lpc_settings_tab.php:240
actionwoocommerce_admin_field_block_codeadmin\lpc_settings_tab.php:1174
actionwoocommerce_admin_field_secured_returnadmin\lpc_settings_tab.php:1178
actionwoocommerce_after_order_itemmetaadmin\orders\lpc_admin_order_affect.php:32
actioncurrent_screenadmin\orders\lpc_admin_order_affect.php:33
actioncurrent_screenadmin\orders\lpc_admin_order_banner.php:107
actionadmin_noticeadmin\orders\lpc_orders_table.php:680
filterwoocommerce_admin_order_actionsadmin\orders\lpc_woo_orders_table_action.php:25
actioncurrent_screenadmin\orders\lpc_woo_orders_table_action.php:26
filterbulk_actions-edit-shop_orderadmin\orders\lpc_woo_orders_table_bulk_actions.php:25
filterhandle_bulk_actions-edit-shop_orderadmin\orders\lpc_woo_orders_table_bulk_actions.php:26
actionadmin_noticesadmin\orders\lpc_woo_orders_table_bulk_actions.php:27
actionwoocommerce_initadmin\orders\lpc_woo_orders_table_bulk_actions.php:28
actioncurrent_screenadmin\pickup\lpc_admin_pickup_web_service.php:22
actioncurrent_screenadmin\pickup\lpc_admin_pickup_widget.php:29
actionwoocommerce_after_order_itemmetaadmin\pickup\lpc_pickup_relay_point_on_order.php:6
actioncurrent_screenadmin\products\lpc_admin_product.php:5
actionproduct_cat_add_form_fieldsadmin\products\lpc_admin_product_category.php:16
actionproduct_cat_edit_form_fieldsadmin\products\lpc_admin_product_category.php:17
actioncreated_termadmin\products\lpc_admin_product_category.php:18
actionedit_termadmin\products\lpc_admin_product_category.php:19
actionlpc_inward_label_generated_to_emailincludes\label\email\lpc_inward_label_email_manager.php:44
actionlpc_inward_label_generatedincludes\label\email\lpc_inward_label_generation_email.php:18
actionlpc_outward_label_generated_to_emailincludes\label\email\lpc_outward_label_email_manager.php:11
actionlpc_outward_label_generatedincludes\label\email\lpc_outward_label_generation_email.php:19
actionwoocommerce_order_status_changedincludes\label\lpc_label_generation_auto.php:17
actionupdate_colissimo_statusesincludes\lpc_cron.php:30
actionpurge_colissimo_labelsincludes\lpc_cron.php:64
actionadmin_enqueue_scriptsincludes\lpc_helper.php:93
actionwp_enqueue_scriptsincludes\lpc_helper.php:101
actioninitincludes\lpc_order_statuses.php:23
filterwc_order_statusesincludes\lpc_order_statuses.php:24
filterwoocommerce_reports_order_statusesincludes\lpc_order_statuses.php:25
filterwoocommerce_order_is_paid_statusesincludes\lpc_order_statuses.php:26
actionwoocommerce_email_classesincludes\lpc_register_wc_email.php:19
actionwoocommerce_email_classesincludes\lpc_register_wc_email.php:20
actionwp_loadedincludes\lpc_update.php:55
filtercron_schedulesincludes\lpc_update.php:56
filterwoocommerce_order_button_htmlincludes\pick_up\lpc_pickup_selection.php:18
actionwoocommerce_checkout_processincludes\pick_up\lpc_pickup_selection.php:19
actionwoocommerce_store_api_checkout_update_order_metaincludes\pick_up\lpc_pickup_selection.php:98
actionwoocommerce_store_api_checkout_order_processedincludes\pick_up\lpc_pickup_selection.php:99
actionwoocommerce_update_orderincludes\pick_up\lpc_pickup_selection.php:100
actionwoocommerce_checkout_order_processedincludes\pick_up\lpc_pickup_selection.php:102
actionwoocommerce_checkout_order_createdincludes\pick_up\lpc_pickup_selection.php:347
actionwp_enqueue_scriptsincludes\pick_up\lpc_pickup_web_service.php:41
actionwoocommerce_after_shipping_rateincludes\pick_up\lpc_pickup_web_service.php:81
filterterms_clausesincludes\shipping\lpc_abstract_shipping.php:137
filterterms_clausesincludes\shipping\lpc_abstract_shipping.php:169
actionwoocommerce_initincludes\shipping\lpc_shipping_methods.php:17
actionwoocommerce_shipping_initincludes\shipping\lpc_shipping_methods.php:29
filterwoocommerce_shipping_methodsincludes\shipping\lpc_shipping_methods.php:41
filterwoocommerce_cart_shipping_method_full_labelincludes\shipping\lpc_shipping_methods.php:84
filterwoocommerce_cart_shipping_method_full_labelincludes\shipping\lpc_shipping_methods.php:85
actionplugins_loadedindex.php:91
actionwoocommerce_blocks_loadedindex.php:99
actionwoocommerce_blocks_cart_block_registrationindex.php:101
actionwoocommerce_blocks_checkout_block_registrationindex.php:107
actionblock_categories_allindex.php:115
actionwoocommerce_after_order_object_saveindex.php:131
actioninitindex.php:172
actioninitindex.php:198
actionbefore_woocommerce_initindex.php:214
actionwp_enqueue_scriptspublic\checkout\lpc_checkout.php:20
actionwoocommerce_after_shipping_ratepublic\checkout\lpc_ddp.php:7
actionwoocommerce_checkout_processpublic\checkout\lpc_ddp.php:8
filterwoocommerce_account_orders_columnspublic\order\lpc_order_tracking.php:38
actionwoocommerce_my_account_my_orders_column_order-trackingpublic\order\lpc_order_tracking.php:39
actionwoocommerce_order_details_after_order_tablepublic\order\lpc_order_tracking.php:41
actionwoocommerce_order_details_after_order_tablepublic\order\lpc_order_tracking.php:42
filterwcpay_express_checkout_js_paramspublic\order\lpc_order_tracking.php:43
actionwoocommerce_before_order_object_savepublic\order\lpc_order_tracking.php:44
actioninitpublic\order\lpc_return.php:39
actionwp_enqueue_scriptspublic\pickup\lpc_pickup_widget.php:49
actionwoocommerce_after_shipping_ratepublic\pickup\lpc_pickup_widget.php:96
filterquery_varspublic\tracking\lpc_tracking_page.php:21
actionparse_requestpublic\tracking\lpc_tracking_page.php:31

Scheduled Events 4

purge_colissimo_labels
update_colissimo_statuses
purge_colissimo_labels
update_colissimo_statuses
Maintenance & Trust

Colissimo Officiel : Méthodes de livraison pour WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 4, 2026
PHP min version7.4.0
Downloads343K

Community Trust

Rating74/100
Number of ratings28
Active installs10K
Developer Profile

Colissimo Officiel : Méthodes de livraison pour WooCommerce Developer Profile

Colissimo

1 plugin · 10K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Colissimo Officiel : Méthodes de livraison pour WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/admin/css/lpc_settings.css/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/admin/js/lpc_settings.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/css/lpc_public.css/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_public.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_shipping_calculator.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_checkout.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_cart.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/includes/admin/js/lpc_update.js+8 more
Script Paths
/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/admin/js/lpc_settings.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_public.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_shipping_calculator.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_checkout.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/public/js/lpc_cart.js/wp-content/plugins/colissimo-shipping-methods-for-woocommerce/includes/admin/js/lpc_update.js+8 more
Version Parameters
colissimo-shipping-methods-for-woocommerce/admin/css/lpc_settings.css?ver=colissimo-shipping-methods-for-woocommerce/admin/js/lpc_settings.js?ver=colissimo-shipping-methods-for-woocommerce/public/css/lpc_public.css?ver=colissimo-shipping-methods-for-woocommerce/public/js/lpc_public.js?ver=colissimo-shipping-methods-for-woocommerce/public/js/lpc_shipping_calculator.js?ver=colissimo-shipping-methods-for-woocommerce/public/js/lpc_checkout.js?ver=colissimo-shipping-methods-for-woocommerce/public/js/lpc_cart.js?ver=colissimo-shipping-methods-for-woocommerce/includes/admin/js/lpc_update.js?ver=colissimo-shipping-methods-for-woocommerce/includes/admin/js/lpc_compatibility.js?ver=colissimo-shipping-methods-for-woocommerce/includes/admin/js/lpc_shipping_methods_init.js?ver=colissimo-shipping-methods-for-woocommerce/includes/admin/js/lpc_admin.js?ver=colissimo-shipping-methods-for-woocommerce/includes/public/js/lpc_order_queries.js?ver=colissimo-shipping-methods-for-woocommerce/includes/public/js/lpc_helper.js?ver=colissimo-shipping-methods-for-woocommerce/includes/public/js/lpc_tracking_page.js?ver=colissimo-shipping-methods-for-woocommerce/includes/public/js/lpc_api.js?ver=colissimo-shipping-methods-for-woocommerce/includes/public/js/lpc_register.js?ver=

HTML / DOM Fingerprints

CSS Classes
lpc_admin_settingslpc_shipping_calculator_wrapperlpc-shipping-methods-for-woocommerce
HTML Comments
<!-- START Colissimo shipping methods for WooCommerce --><!-- END Colissimo shipping methods for WooCommerce -->
Data Attributes
data-lpc-shipping-addressdata-lpc-shipping-countrydata-lpc-shipping-postcodedata-lpc-shipping-citydata-lpc-shipping-weightdata-lpc-shipping-dimensions+1 more
JS Globals
LPC_API_URLLPC_AJAX_URLLPC_POSTCODE_REGEXLPC_CARTLPC_CHECKOUTLPC_SHIPPING_CALCULATOR+1 more
FAQ

Frequently Asked Questions about Colissimo Officiel : Méthodes de livraison pour WooCommerce