
Eledo PDF Attachments for WooCommerce Security & Risk Analysis
wordpress.org/plugins/eledo-pdf-attachments-for-woocommerceAutomatically generate and attach customizable PDF documents to WooCommerce emails by Payment method.
Is Eledo PDF Attachments for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Eledo PDF Attachments for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "eledo-pdf-attachments-for-woocommerce" v1.4.0 plugin exhibits a generally good security posture, with no recorded vulnerabilities and a strong focus on using prepared statements for SQL queries and proper output escaping. The attack surface is remarkably small, with no direct entry points like AJAX handlers, REST API routes, or shortcodes that are exposed without authentication. This indicates a thoughtful approach to limiting potential attack vectors.
However, the static analysis does reveal some areas of concern. Specifically, the taint analysis identified two high-severity flows with unsanitized paths. While these flows didn't reach a critical severity or lead to a direct code execution vulnerability in this version, unsanitized paths can be precursors to file inclusion or path traversal vulnerabilities if not handled meticulously. The presence of file operations (9) also warrants attention in conjunction with these unsanitized paths, suggesting that user-supplied input might be involved in file access or manipulation without adequate sanitization.
Despite these specific concerns, the absence of any known CVEs and the plugin's history of not having reported vulnerabilities are significant strengths. The overall impression is of a plugin with a solid foundation but with a few critical areas in the taint analysis that require immediate developer attention to ensure long-term security.
Key Concerns
- High severity taint flows with unsanitized paths
- Unsanitized paths in taint analysis (4 total)
- SQL queries: 50% not using prepared statements
- Output escaping: 30% not properly escaped
Eledo PDF Attachments for WooCommerce Security Vulnerabilities
Eledo PDF Attachments for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Eledo PDF Attachments for WooCommerce Attack Surface
WordPress Hooks 12
Maintenance & Trust
Eledo PDF Attachments for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Eledo PDF Attachments for WooCommerce Alternatives
PDF Invoices & Packing Slips for WooCommerce
woocommerce-pdf-invoices-packing-slips
Create, print & automatically email PDF or XML Invoices & PDF Packing Slips for WooCommerce orders.
WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels
print-invoices-packing-slip-labels-for-woocommerce
Auto-generate and attach WooCommerce PDF invoices and packing slips to order emails with customizable templates & bulk print options.
Invoices for WooCommerce
woocommerce-pdf-invoices
Automatically generate and attach customizable PDF Invoices and PDF Packing Slips for WooCommerce to emails.
WCPDF User Template
bvd-wcpdf-user-template
With this plugin you can change what PDF template will be used for a certain user. "WooCommerce PDF Invoices & Packing Slips" is the plu …
Kitgenix PDF Invoicing for WooCommerce
kitgenix-pdf-invoicing-for-woocommerce
Generate PDF invoices, receipts, packing slips and credit notes for WooCommerce. Overrides, customer downloads, and configurable email attachments.
Eledo PDF Attachments for WooCommerce Developer Profile
1 plugin · 0 total installs
How We Detect Eledo PDF Attachments for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/eledo-pdf-attachments-for-woocommerce/css/eledo.css/wp-content/plugins/eledo-pdf-attachments-for-woocommerce/js/eledo.js/wp-content/plugins/eledo-pdf-attachments-for-woocommerce/js/eledo-admin.js/wp-content/plugins/eledo-pdf-attachments-for-woocommerce/js/eledo.js/wp-content/plugins/eledo-pdf-attachments-for-woocommerce/js/eledo-admin.jseledo-pdf-attachments-for-woocommerce/css/eledo.css?ver=eledo-pdf-attachments-for-woocommerce/js/eledo.js?ver=eledo-pdf-attachments-for-woocommerce/js/eledo-admin.js?ver=HTML / DOM Fingerprints
eledo-order-pdf-buttondata-eledo-iddata-eledo-templateeledo_vars