Easy Fattura Elettronica FREE Security & Risk Analysis

wordpress.org/plugins/easy-fattura-elettronica-free

Compatibile con la versione 1.7.1 delle specifiche tecniche dell'Agenzia delle Entrate in vigore dal 1° ottobre 2022.

100 active installs v1.6.21 PHP 5.3+ WP 3.5+ Updated Mar 12, 2026
fattura-elettronicafattura-elettronica-woocommercefattura-woocommercefatturazione-elettronicafatturazione-xml
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Easy Fattura Elettronica FREE Safe to Use in 2026?

Generally Safe

Score 100/100

Easy Fattura Elettronica FREE has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 23d ago
Risk Assessment

The 'easy-fattura-elettronica-free' v1.6.21 plugin exhibits a mixed security posture. While it has no known CVEs, indicating a potentially stable history, the static analysis reveals significant areas of concern. The plugin exposes 3 AJAX handlers without any authentication checks, representing a direct attack vector for unauthenticated users. Furthermore, 2 out of 3 analyzed taint flows have unsanitized paths, with a high severity, suggesting potential for code injection or data manipulation if these flows are triggered by user input.

Key Concerns

  • AJAX handlers without authentication checks
  • Taint flows with unsanitized paths (high severity)
  • SQL queries with low prepared statement usage
  • Output escaping below optimal levels
  • Capability checks are entirely absent
Vulnerabilities
None known

Easy Fattura Elettronica FREE Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Easy Fattura Elettronica FREE Code Analysis

Dangerous Functions
0
Raw SQL Queries
13
4 prepared
Unescaped Output
57
144 escaped
Nonce Checks
4
Capability Checks
0
File Operations
1
External Requests
1
Bundled Libraries
1

Bundled Libraries

TCPDF

SQL Query Safety

24% prepared17 total queries

Output Escaping

72% escaped201 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

3 flows2 with unsanitized paths
<easy-fattura-elettronica> (easy-fattura-elettronica.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

Easy Fattura Elettronica FREE Attack Surface

Entry Points6
Unprotected3

AJAX Handlers 3

authwp_ajax_check_nc_order_calleasy-fattura-elettronica.php:2237
authwp_ajax_xml_api_calleasy-fattura-elettronica.php:2418
noprivwp_ajax_xml_api_calleasy-fattura-elettronica.php:2419

REST API Routes 3

POST/wp-json/easy-fattura-elettronica-api/v1/ordersincludes\easy-fattura-elettronica-api.php:4
POST/wp-json/easy-fattura-elettronica-api/v1/invoiceincludes\easy-fattura-elettronica-api.php:10
GET/wp-json/easy-fattura-elettronica-api/v1/checkincludes\easy-fattura-elettronica-api.php:16
WordPress Hooks 24
actiongenerate_nota_creditoeasy-fattura-elettronica.php:1035
actiondemo_rubricaeasy-fattura-elettronica.php:1048
actiondemo_backupeasy-fattura-elettronica.php:1204
filterwoocommerce_checkout_fieldseasy-fattura-elettronica.php:1507
actionwoocommerce_checkout_processeasy-fattura-elettronica.php:1514
actionwoocommerce_checkout_update_order_metaeasy-fattura-elettronica.php:1785
filterwoocommerce_email_order_meta_fieldseasy-fattura-elettronica.php:1810
actionadd_meta_boxeseasy-fattura-elettronica.php:1853
actionwoocommerce_process_shop_order_metaeasy-fattura-elettronica.php:1982
filterwoocommerce_order_details_after_order_tableeasy-fattura-elettronica.php:2017
filtermanage_edit-shop_order_columnseasy-fattura-elettronica.php:2048
filtermanage_edit-shop_order_columnseasy-fattura-elettronica.php:2060
actionmanage_shop_order_posts_custom_columneasy-fattura-elettronica.php:2104
filtercron_scheduleseasy-fattura-elettronica.php:2450
actionefe_azzera_contatori_annualeeasy-fattura-elettronica.php:2451
actionadmin_menueasy-fattura-elettronica.php:2452
actionadmin_initeasy-fattura-elettronica.php:2453
actionwoocommerce_after_checkout_billing_formeasy-fattura-elettronica.php:2455
actionplugins_loadedincludes\class-easy-fattura-elettronica.php:142
actionadmin_enqueue_scriptsincludes\class-easy-fattura-elettronica.php:157
actionadmin_enqueue_scriptsincludes\class-easy-fattura-elettronica.php:158
actionwp_enqueue_scriptsincludes\class-easy-fattura-elettronica.php:173
actionwp_enqueue_scriptsincludes\class-easy-fattura-elettronica.php:174
actionrest_api_initincludes\easy-fattura-elettronica-api.php:3

Scheduled Events 1

efe_azzera_contatori_annuale
Maintenance & Trust

Easy Fattura Elettronica FREE Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 12, 2026
PHP min version5.3
Downloads15K

Community Trust

Rating98/100
Number of ratings26
Active installs100
Developer Profile

Easy Fattura Elettronica FREE Developer Profile

cosmocode

2 plugins · 120 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Fattura Elettronica FREE

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-fattura-elettronica-free/css/efe-style.css/wp-content/plugins/easy-fattura-elettronica-free/js/efe-script.js
Version Parameters
/wp-content/plugins/easy-fattura-elettronica-free/css/efe-style.css?ver=/wp-content/plugins/easy-fattura-elettronica-free/js/efe-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
easy-fattura-elettronica-wrapdashicons-media-text
FAQ

Frequently Asked Questions about Easy Fattura Elettronica FREE