
Easy Table Rate Shipping for WooCommmerce Security & Risk Analysis
wordpress.org/plugins/easy-table-rate-shipping-for-woocommerceTable rate shipping extends WooCommerce’s default shipping options letting you calculate shipping costs based on total price, item count, weight, etc
Is Easy Table Rate Shipping for WooCommmerce Safe to Use in 2026?
Generally Safe
Score 85/100Easy Table Rate Shipping for WooCommmerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "easy-table-rate-shipping-for-woocommerce" plugin v1.3.0 exhibits a generally positive security posture due to a very limited attack surface and a lack of recorded vulnerabilities. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly reduces the potential entry points for attackers. Furthermore, the presence of nonce and capability checks, along with a relatively good percentage of properly escaped output, indicates adherence to some secure coding practices.
However, there are notable areas of concern. The plugin utilizes two SQL queries, neither of which employ prepared statements. This is a significant risk, as it opens the door to potential SQL injection vulnerabilities if user-supplied data is incorporated into these queries without proper sanitization or parameterization. Additionally, the taint analysis revealed two flows with unsanitized paths, although thankfully no critical or high-severity issues were identified in this regard. The presence of external HTTP requests, while not inherently risky, warrants attention to ensure they are handled securely and don't expose the site to further vulnerabilities.
The plugin's vulnerability history is clean, with no recorded CVEs. This is a strong positive indicator, suggesting that the developers have historically maintained a secure codebase or that the plugin hasn't been a target for in-depth vulnerability research. However, the static analysis findings, particularly the raw SQL queries and unsanitized paths, highlight that even without a history of disclosed vulnerabilities, inherent risks can still exist. The conclusion is that while the plugin is currently free of publicly known vulnerabilities and has a limited attack surface, the unescaped SQL queries and unsanitized paths present tangible risks that should be addressed to strengthen its overall security.
Key Concerns
- Raw SQL queries without prepared statements
- Taint flows with unsanitized paths
- External HTTP requests
Easy Table Rate Shipping for WooCommmerce Security Vulnerabilities
Easy Table Rate Shipping for WooCommmerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Easy Table Rate Shipping for WooCommmerce Attack Surface
WordPress Hooks 17
Maintenance & Trust
Easy Table Rate Shipping for WooCommmerce Maintenance & Trust
Maintenance Signals
Community Trust
Easy Table Rate Shipping for WooCommmerce Alternatives
Shipped – Table Rate Shipping Method | for WooCommerce
table-rate-shipping-rates
Shipped - Table Rate Shipping Method a powerful, flexible and easy-to-use shipping plugin for WooCommerce.
Weight Based Shipping Table Rate for WooCommerce – Flexible Shipping
flexible-shipping
Weight based shipping methods for WooCommerce. Flexible shipping with table rate rules by cart weight and order value. Accurate rates at checkout.
Weight Based Shipping for WooCommerce
weight-based-shipping-for-woocommerce
Weight Based Shipping is a flexible and widely-used solution to calculate shipping costs based on the total cart weight and value.
Table Rate Shipping for WooCommerce
woocommerce-easy-table-rate-shipping
Advanced shipping rate for WooCommerce. Calculate rate shipping using country, weight, or price. Supports WooCommerce shipping zones.
Flat Rate Shipping Method for WooCommerce
woo-extra-flat-rate
Create flexible flat rate shipping methods with custom rules i.e. for specific products or countries where the products will be shipped to.
Easy Table Rate Shipping for WooCommmerce Developer Profile
3 plugins · 300 total installs
How We Detect Easy Table Rate Shipping for WooCommmerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easy-table-rate-shipping-for-woocommerce/assets/shipping.css/wp-content/plugins/easy-table-rate-shipping-for-woocommerce/assets/shipping.jseasy-table-rate-shipping-for-woocommerce/assets/shipping.jseasy-table-rate-shipping-for-woocommerce/assets/shipping.css?ver=easy-table-rate-shipping-for-woocommerce/assets/shipping.js?ver=HTML / DOM Fingerprints
data-instance_id