Faturatik E-Arşiv Fatura Entegrasyonu Security & Risk Analysis

wordpress.org/plugins/e-arsiv-fatura-enteragrasyonu

WooCommerce için e-Arşiv fatura otomasyonu, kademeli kargo, Türkiye KDV ve il/ilçe seçici. Manuel işlerden kurtulun, daha fazla sipariş alın.

0 active installs v1.4.3 PHP 8.0+ WP 6.0+ Updated Mar 8, 2026
e-arsive-faturafaturavergiwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Faturatik E-Arşiv Fatura Entegrasyonu Safe to Use in 2026?

Generally Safe

Score 100/100

Faturatik E-Arşiv Fatura Entegrasyonu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 27d ago
Risk Assessment

The 'e-arsiv-fatura-enteragrasyonu' v1.4.3 plugin exhibits a mixed security posture. On one hand, it demonstrates good practices such as a high percentage of SQL prepared statements and properly escaped output, along with a substantial number of nonce and capability checks, suggesting a developer aware of common WordPress security patterns. The absence of known CVEs and dangerous functions is also a positive indicator.

However, the plugin presents significant concerns regarding its attack surface. A notable number of AJAX handlers (4 out of 9) and a REST API route (1 out of 1) lack authentication checks. This creates direct entry points for unauthorized access and potentially malicious actions if these endpoints are exploitable. The taint analysis, while limited in scope (3 flows), did identify one flow with unsanitized paths, which could lead to path traversal vulnerabilities if not properly handled within the AJAX or REST API endpoints.

The vulnerability history being clean is encouraging, but it does not negate the risks posed by the identified insecure entry points. The overall risk is moderate, leaning towards higher due to the unprotected AJAX and REST API endpoints, which are prime targets for attackers. While many areas are well-secured, these critical oversights in access control could be exploited to compromise the site.

Key Concerns

  • Unprotected AJAX handlers
  • Unprotected REST API route
  • Unsanitized paths in taint flow
Vulnerabilities
None known

Faturatik E-Arşiv Fatura Entegrasyonu Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Faturatik E-Arşiv Fatura Entegrasyonu Code Analysis

Dangerous Functions
0
Raw SQL Queries
8
22 prepared
Unescaped Output
23
295 escaped
Nonce Checks
16
Capability Checks
18
File Operations
2
External Requests
1
Bundled Libraries
0

SQL Query Safety

73% prepared30 total queries

Output Escaping

93% escaped318 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

3 flows1 with unsanitized paths
handle_save (includes\admin\class-faturatik-efatura-admin.php:236)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
5 unprotected

Faturatik E-Arşiv Fatura Entegrasyonu Attack Surface

Entry Points10
Unprotected5

AJAX Handlers 9

authwp_ajax_faturatik_clear_stats_cacheincludes\admin\class-faturatik-dashboard-widget.php:26
authwp_ajax_faturatik_test_connectionincludes\admin\class-faturatik-efatura-admin.php:23
authwp_ajax_faturatik_dismiss_update_noticeincludes\admin\class-faturatik-efatura-admin.php:25
authwp_ajax_faturatik_send_orderincludes\class-faturatik-plugin.php:72
authwp_ajax_faturatik_bulk_sendincludes\class-faturatik-plugin.php:85
authwp_ajax_faturatik_kargo_get_noticemodules\tr-shipping\module.php:42
noprivwp_ajax_faturatik_kargo_get_noticemodules\tr-shipping\module.php:43
authwp_ajax_wc_kdv_count_productsmodules\tr-tax\includes\class-kdv-bulk.php:19
authwp_ajax_wc_kdv_process_batchmodules\tr-tax\includes\class-kdv-bulk.php:20

REST API Routes 1

GET/wp-json/tr-address/v1/districts/(?P<id>[A-Z0-9]+)modules\tr-address\includes\class-il-ilce-fields.php:249
WordPress Hooks 79
actionbefore_woocommerce_inite-arsiv-fatura-enteragrasyonu.php:49
actionadmin_noticese-arsiv-fatura-enteragrasyonu.php:105
actionplugins_loadede-arsiv-fatura-enteragrasyonu.php:135
actionadmin_inite-arsiv-fatura-enteragrasyonu.php:215
actionwp_dashboard_setupincludes\admin\class-faturatik-dashboard-widget.php:25
actionadmin_noticesincludes\admin\class-faturatik-dashboard-widget.php:27
actionadmin_enqueue_scriptsincludes\admin\class-faturatik-dashboard-widget.php:28
actionadmin_post_faturatik_save_settingsincludes\admin\class-faturatik-efatura-admin.php:22
actionadmin_noticesincludes\admin\class-faturatik-efatura-admin.php:24
actionadmin_enqueue_scriptsincludes\admin\class-faturatik-efatura-admin.php:26
actionadmin_footerincludes\admin\class-faturatik-efatura-admin.php:92
actionadmin_menuincludes\admin\class-faturatik-tools.php:50
actionadmin_enqueue_scriptsincludes\admin\class-faturatik-tools.php:51
actionadmin_enqueue_scriptsincludes\class-faturatik-plugin.php:52
actionadmin_enqueue_scriptsincludes\class-faturatik-plugin.php:53
filtermanage_edit-shop_order_columnsincludes\class-faturatik-plugin.php:63
actionmanage_shop_order_posts_custom_columnincludes\class-faturatik-plugin.php:64
filtermanage_woocommerce_page_wc-orders_columnsincludes\class-faturatik-plugin.php:66
actionmanage_woocommerce_page_wc-orders_custom_columnincludes\class-faturatik-plugin.php:67
actionadd_meta_boxesincludes\class-faturatik-plugin.php:71
filterbulk_actions-edit-shop_orderincludes\class-faturatik-plugin.php:77
filterhandle_bulk_actions-edit-shop_orderincludes\class-faturatik-plugin.php:78
filterbulk_actions-woocommerce_page_wc-ordersincludes\class-faturatik-plugin.php:80
filterhandle_bulk_actions-woocommerce_page_wc-ordersincludes\class-faturatik-plugin.php:81
actionadmin_noticesincludes\class-faturatik-plugin.php:83
actionwp_enqueue_scriptsincludes\class-faturatik-plugin.php:95
actionwp_enqueue_scriptsincludes\class-faturatik-plugin.php:96
filterwoocommerce_billing_fieldsincludes\class-faturatik-plugin.php:100
filterwoocommerce_form_fieldincludes\class-faturatik-plugin.php:101
actionwoocommerce_checkout_processincludes\class-faturatik-plugin.php:102
actionwoocommerce_checkout_order_createdincludes\class-faturatik-plugin.php:103
actionwoocommerce_admin_order_data_after_billing_addressincludes\class-faturatik-plugin.php:104
actionwoocommerce_email_after_order_tableincludes\class-faturatik-plugin.php:105
actioninitincludes\class-faturatik-plugin.php:109
filterquery_varsincludes\class-faturatik-plugin.php:110
filterwoocommerce_account_menu_itemsincludes\class-faturatik-plugin.php:111
actionwoocommerce_order_details_after_order_tableincludes\class-faturatik-plugin.php:113
actionwoocommerce_email_after_order_tableincludes\class-faturatik-plugin.php:117
actionwoocommerce_checkout_order_createdincludes\class-faturatik-plugin.php:136
actionwoocommerce_payment_completeincludes\class-faturatik-plugin.php:141
actioninitincludes\class-faturatik-plugin.php:157
filterquery_varsincludes\class-faturatik-plugin.php:158
actiontemplate_redirectincludes\class-faturatik-plugin.php:159
actionfaturatik_retry_failed_ordersincludes\class-faturatik-plugin.php:170
actionfaturatik_retry_single_orderincludes\class-faturatik-plugin.php:171
actionadmin_post_faturatik_il_ilce_togglemodules\tr-address\includes\class-il-ilce-admin.php:25
actionadmin_post_faturatik_il_ilce_reloadmodules\tr-address\includes\class-il-ilce-admin.php:26
filterwoocommerce_default_address_fieldsmodules\tr-address\includes\class-il-ilce-fields.php:13
filterwoocommerce_checkout_fieldsmodules\tr-address\includes\class-il-ilce-fields.php:14
filterwoocommerce_get_country_localemodules\tr-address\includes\class-il-ilce-fields.php:15
filterwoocommerce_billing_fieldsmodules\tr-address\includes\class-il-ilce-fields.php:16
filterwoocommerce_shipping_fieldsmodules\tr-address\includes\class-il-ilce-fields.php:17
filterwoocommerce_customer_get_billing_statemodules\tr-address\includes\class-il-ilce-fields.php:20
filterwoocommerce_customer_get_shipping_statemodules\tr-address\includes\class-il-ilce-fields.php:21
filterwoocommerce_form_field_argsmodules\tr-address\includes\class-il-ilce-fields.php:24
actionwp_footermodules\tr-address\includes\class-il-ilce-fields.php:27
actionwp_enqueue_scriptsmodules\tr-address\includes\class-il-ilce-fields.php:30
actionrest_api_initmodules\tr-address\includes\class-il-ilce-fields.php:33
actionplugins_loadedmodules\tr-address\module.php:23
actionadmin_initmodules\tr-checkout\includes\class-checkout-admin.php:22
filterwoocommerce_checkout_fieldsmodules\tr-checkout\includes\class-checkout-fields-editor.php:24
actionadmin_post_faturatik_save_checkout_fieldsmodules\tr-checkout\includes\class-checkout-fields-editor.php:25
filterwoocommerce_checkout_fieldsmodules\tr-checkout\includes\class-checkout-fields-editor.php:137
actionplugins_loadedmodules\tr-checkout\module.php:16
filterwoocommerce_ship_to_different_address_checkedmodules\tr-checkout\module.php:25
filterwoocommerce_terms_is_checked_defaultmodules\tr-checkout\module.php:29
actionplugins_loadedmodules\tr-shipping\module.php:16
filterwoocommerce_shipping_methodsmodules\tr-shipping\module.php:30
actionwp_enqueue_scriptsmodules\tr-shipping\module.php:36
actionwoocommerce_before_cartmodules\tr-shipping\module.php:37
actionwoocommerce_before_checkout_formmodules\tr-shipping\module.php:38
filterwoocommerce_add_to_cart_fragmentsmodules\tr-shipping\module.php:39
actionadmin_enqueue_scriptsmodules\tr-shipping\module.php:48
actionadmin_post_wc_kdv_setupmodules\tr-tax\includes\class-kdv-admin.php:24
actionadmin_post_wc_kdv_removemodules\tr-tax\includes\class-kdv-admin.php:25
filteroption_woocommerce_tax_classesmodules\tr-tax\includes\class-kdv-setup.php:30
filterpre_update_option_woocommerce_tax_classesmodules\tr-tax\includes\class-kdv-setup.php:36
actionadmin_initmodules\tr-tax\includes\class-kdv-setup.php:41
actionplugins_loadedmodules\tr-tax\module.php:32

Scheduled Events 1

faturatik_retry_failed_orders
Maintenance & Trust

Faturatik E-Arşiv Fatura Entegrasyonu Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 8, 2026
PHP min version8.0
Downloads541

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Faturatik E-Arşiv Fatura Entegrasyonu Developer Profile

Faturatik

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Faturatik E-Arşiv Fatura Entegrasyonu

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/e-arsiv-fatura-enteragrasyonu/admin/css/faturatik-admin.css/wp-content/plugins/e-arsiv-fatura-enteragrasyonu/admin/js/faturatik-admin.js
Script Paths
/wp-content/plugins/e-arsiv-fatura-enteragrasyonu/admin/js/faturatik-admin.js
Version Parameters
e-arsiv-fatura-enteragrasyonu/admin/css/faturatik-admin.css?ver=e-arsiv-fatura-enteragrasyonu/admin/js/faturatik-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
faturatik-woocommerce-container
HTML Comments
<!-- Faturatik E-Arşiv Fatura Entegrasyonu --><!-- Faturatik e-arsiv-fatura-enteragrasyonu --><!-- Generated by Faturatik E-Arşiv Fatura Entegrasyonu -->
Data Attributes
data-faturatik-wc-ajax-url
JS Globals
faturatik_wc_settingsfaturatik_wc_ajax_object
REST Endpoints
/wp-json/faturatik-wc/v1/get-provinces/wp-json/faturatik-wc/v1/get-districts
FAQ

Frequently Asked Questions about Faturatik E-Arşiv Fatura Entegrasyonu