
EdgeTariff for WooCommerce Security & Risk Analysis
wordpress.org/plugins/edgetariff-toolsAutomatically calculate and display shipping, duties & taxes on your WooCommerce checkout, as a Total Landed Cost. Giving global buyers an inform …
Is EdgeTariff for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100EdgeTariff for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The edgetariff-tools plugin v1.1.2 demonstrates a generally strong security posture with a commendable 0 unprotected entry points across its AJAX handlers, REST API routes, and shortcodes. The extensive use of prepared statements for SQL queries and the high percentage of properly escaped output are significant strengths, indicating good development practices. The plugin also incorporates a substantial number of nonce and capability checks, further bolstering its defenses.
However, the presence of the `unserialize` function is a notable concern, as it can be a vector for remote code execution if not handled with extreme caution and validation. The taint analysis revealing two flows with unsanitized paths, categorized as high severity, directly aligns with this concern and points to potential risks if user-supplied data is unserialized without proper sanitization. The plugin's vulnerability history being clear of any recorded CVEs is positive but does not negate the risks identified in the static analysis.
In conclusion, while the plugin exhibits good foundational security, the identified potential for unserialization vulnerabilities and unsanitized data flows represent the most significant risks that require attention. Addressing these specific areas will be crucial for maintaining a robust security profile.
Key Concerns
- Unsanitized path in taint flow (High severity)
- Unsanitized path in taint flow (High severity)
- Presence of dangerous function 'unserialize'
- Bundled outdated library TCPDF v1.0.004
EdgeTariff for WooCommerce Security Vulnerabilities
EdgeTariff for WooCommerce Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
EdgeTariff for WooCommerce Attack Surface
AJAX Handlers 17
REST API Routes 1
Shortcodes 3
WordPress Hooks 128
Maintenance & Trust
EdgeTariff for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
EdgeTariff for WooCommerce Alternatives
No alternatives data available yet.
EdgeTariff for WooCommerce Developer Profile
1 plugin · 0 total installs
How We Detect EdgeTariff for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/edgetariff-tools/assets/css/edgetariff-custom-style.css/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-custom-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-admin-custom-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-rps-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-common-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-admin-custom-js.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-custom-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-admin-custom-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-rps-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-common-script.js/wp-content/plugins/edgetariff-tools/assets/js/edgetariff-admin-custom-js.jsedgetariff-tools/assets/css/edgetariff-custom-style.css?ver=edgetariff-tools/assets/js/edgetariff-custom-script.js?ver=edgetariff-tools/assets/js/edgetariff-admin-custom-script.js?ver=edgetariff-tools/assets/js/edgetariff-rps-script.js?ver=edgetariff-tools/assets/js/edgetariff-common-script.js?ver=edgetariff-tools/assets/js/edgetariff-admin-custom-js.js?ver=HTML / DOM Fingerprints
edgetariff-custom-styleedgetariff-order-item-wrapperedgetariff-product-wrapperdata-edgetariff-country-codedata-edgetariff-valuedata-product-iddata-variation-idedtcs_ajax_objectedtcs_common_vars/wp-json/edgetariff-tools/v1/settings/wp-json/edgetariff-tools/v1/products/wp-json/edgetariff-tools/v1/order-details