
Easyship WooCommerce Shipping Rates Security & Risk Analysis
wordpress.org/plugins/easyship-woocommerce-shipping-ratesEasyship for WooCommerce saves you time and money with live courier rates, seamless checkout, automated taxes & duties, and shipping label creation.
Is Easyship WooCommerce Shipping Rates Safe to Use in 2026?
Generally Safe
Score 100/100Easyship WooCommerce Shipping Rates has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "easyship-woocommerce-shipping-rates" plugin v0.9.13 exhibits a mixed security posture. On the positive side, all SQL queries are prepared, output is consistently escaped, and there are no file operations or bundled libraries to consider for outdated versions. The plugin also demonstrates an awareness of WordPress security by including nonce checks and capability checks on most entry points.
However, a significant concern arises from the presence of one unprotected AJAX handler, which represents a direct attack vector. While taint analysis shows no current unsanitized flows, the existence of the dangerous `unserialize` function without explicit context on its usage raises a potential flag. The plugin's vulnerability history indicates a past medium severity vulnerability related to Missing Authorization, and while currently patched, it suggests a recurring area of weakness that warrants attention.
In conclusion, while the plugin has made strides in implementing good security practices like prepared statements and output escaping, the unprotected AJAX endpoint is a critical vulnerability that needs immediate remediation. The potential risks associated with `unserialize` and the past authorization issues, although not currently active, suggest that ongoing vigilance and thorough security reviews are essential for this plugin.
Key Concerns
- Unprotected AJAX handler
- Presence of dangerous unserialize function
- Past medium severity vulnerability (Missing Auth)
Easyship WooCommerce Shipping Rates Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Easyship WooCommerce Shipping Rates <= 0.8.9 - Missing Authorization via multiple AJAX actions
Easyship WooCommerce Shipping Rates Release Timeline
Easyship WooCommerce Shipping Rates Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Easyship WooCommerce Shipping Rates Attack Surface
AJAX Handlers 1
WordPress Hooks 12
Maintenance & Trust
Easyship WooCommerce Shipping Rates Maintenance & Trust
Maintenance Signals
Community Trust
Easyship WooCommerce Shipping Rates Alternatives
Printful Integration for WooCommerce
printful-shipping-for-woocommerce
Grow your store with the top print-on-demand dropshipping plugin
WC Hide Shipping Methods
wc-hide-shipping-methods
This plugin automatically hides all other shipping methods when "Free Shipping" is available, while allowing you to retain "Local Picku …
Gelato Integration for WooCommerce
gelato-integration-for-woocommerce
Sell globally, print locally with 100+ production hubs in 32 countries
Sendcloud Shipping
sendcloud-connected-shipping
SendCloud helps to grow your online store by optimizing the shipping process. Shipping packages has never been that easy!
PiWeb Flat rate / Conditional shipping for WooCommerce
advanced-free-flat-shipping-woocommerce
WooCommerce conditional shipping & WooCommerce Advanced Flat rate shipping rates plugin to Create Advanced Flat rate shipping or Free shipping met …
Easyship WooCommerce Shipping Rates Developer Profile
1 plugin · 2K total installs
How We Detect Easyship WooCommerce Shipping Rates
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/easyship-woocommerce-shipping-rates/assets/css/easyship-admin-shipping-styles.css/wp-content/plugins/easyship-woocommerce-shipping-rates/assets/js/easyship-admin-shipping-page.js/wp-content/plugins/easyship-woocommerce-shipping-rates/assets/css/easyship-settings-page.css/wp-content/plugins/easyship-woocommerce-shipping-rates/assets/js/easyship-settings-page.js/wp-content/plugins/easyship-woocommerce-shipping-rates/assets/js/easyship-admin-shipping-page.js/wp-content/plugins/easyship-woocommerce-shipping-rates/assets/js/easyship-settings-page.jseasyship-woocommerce-shipping-rates/assets/css/easyship-admin-shipping-styles.css?ver=easyship-woocommerce-shipping-rates/assets/js/easyship-admin-shipping-page.js?ver=easyship-woocommerce-shipping-rates/assets/css/easyship-settings-page.css?ver=easyship-woocommerce-shipping-rates/assets/js/easyship-settings-page.js?ver=HTML / DOM Fingerprints
easyship-connect-buttoneasyship-settings-page<!-- Easyship Settings --><!-- Connect to Easyship --><!-- Easyship Connect Button -->data-easyship-settings-noncedata-easyship-connect-noncedata-easyship-ajax-urleasyship_settingseasyship_connect_paramseasyship_admin_shipping_page_params/wp-json/easyship/v1/connect/wp-json/easyship/v1/settings