
DrEnvio for WooCommerce Security & Risk Analysis
wordpress.org/plugins/drenvio-for-woocommercePermite que tus clientes coticen por más de 10 paqueterías desde el checkout de tu tienda y con esto aumenta tu conversión.
Is DrEnvio for WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100DrEnvio for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The security posture of the "drenvio-for-woocommerce" plugin v2.0.10 appears to be generally strong based on the static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the attack surface. Furthermore, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and showing a high percentage of properly escaped outputs. The lack of known CVEs and a clean vulnerability history are positive indicators of a well-maintained and secure plugin. However, the absence of nonce and capability checks across its entry points, coupled with the presence of file operations and external HTTP requests, warrants careful consideration. While no immediate critical or high-severity vulnerabilities were detected in the taint analysis, these missing security checks could potentially be leveraged by attackers in conjunction with other weaknesses if they exist in less obvious parts of the code. The plugin's strengths lie in its minimal attack surface and secure data handling for SQL, but the lack of explicit authorization checks on certain operations is a notable area of potential concern.
Key Concerns
- Missing nonce checks
- Missing capability checks
- File operations present
- External HTTP requests present
- Output escaping not 100%
DrEnvio for WooCommerce Security Vulnerabilities
DrEnvio for WooCommerce Code Analysis
Output Escaping
DrEnvio for WooCommerce Attack Surface
WordPress Hooks 7
Maintenance & Trust
DrEnvio for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
DrEnvio for WooCommerce Alternatives
Emissary for Woocommerce
emissary-for-woocommerce
El software esencial de logística para su negocio. Muestre costos de envío variables en función de la dirección de su tienda y la dirección del client …
Moova
moova-for-woocommerce
Plugin to connect Moova's Shipping services with WooCommerce
SEUR Oficial
seur
Add SEUR shipping method to WooCommerce. The SEUR plugin for WooCommerce allows you to manage your order dispatches in a fast and easy way
SuperFrete
superfrete
Integração com a plataforma SuperFrete para WooCommerce.
Virtuaria Correios – Frete, Etiqueta, Rastreio e Declaração
virtuaria-correios
Etiqueta, declaração, rastreio, calculadora, devolução, campos de checkout, descontos, tudo isso na versão grátis, com ou sem contrato. Tem MUITO+
DrEnvio for WooCommerce Developer Profile
1 plugin · 100 total installs
How We Detect DrEnvio for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/drenvio-for-woocommerce/public/css/styles.css/wp-content/plugins/drenvio-for-woocommerce/public/js/ajax.js/wp-content/plugins/drenvio-for-woocommerce/public/js/utils.js/wp-content/plugins/drenvio-for-woocommerce/public/js/ajax.js/wp-content/plugins/drenvio-for-woocommerce/public/js/utils.jsHTML / DOM Fingerprints
drenviofwoo<!-- DrEnvio for WooCommerce -->data-drenvio-iddata-drenvio-nameDrEnvioFWooAjax/wp-json/drenviofwoo/v1/shipping-options[drenvio_shipping_calculator]