
Envíopack (Argentina) Security & Risk Analysis
wordpress.org/plugins/enviopack-argentinaLogística de alto desempeño para empresas que no pueden fallar.
Is Envíopack (Argentina) Safe to Use in 2026?
Generally Safe
Score 100/100Envíopack (Argentina) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'enviopack-argentina' plugin v1.0.18 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and properly escaping a high percentage of its outputs. The absence of known CVEs and a clean vulnerability history further suggest a relatively stable code base. However, significant concerns arise from its attack surface. The plugin exposes four AJAX handlers without any authentication checks, creating a substantial risk of unauthorized actions. Additionally, the presence of the `unserialize` function is a known vulnerability vector if not handled with extreme care, and the taint analysis revealed one flow with an unsanitized path, though classified as not critical.
The lack of nonce checks on the unprotected AJAX endpoints is a critical oversight. While the plugin doesn't appear to have a history of publicly disclosed vulnerabilities, the current state of its exposed entry points presents a readily exploitable scenario for attackers. The taint analysis, even without critical findings, indicates potential weaknesses in how data is handled. Overall, the plugin has strengths in data handling for SQL and output, but its unprotected AJAX endpoints and use of `unserialize` represent serious, actionable security risks.
Key Concerns
- Unprotected AJAX handlers
- Dangerous function: unserialize
- Taint flow with unsanitized paths
- No nonce checks on AJAX handlers
Envíopack (Argentina) Security Vulnerabilities
Envíopack (Argentina) Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Envíopack (Argentina) Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 26
Maintenance & Trust
Envíopack (Argentina) Maintenance & Trust
Maintenance Signals
Community Trust
Envíopack (Argentina) Alternatives
EnvíoPack (Chile)
enviopack
Logística de alto desempeño para empresas que no pueden fallar.
StoreCustomizer – A plugin to Customize all WooCommerce Pages
woocustomizer
A store editor plugin for editing all WooCommerce store and product pages, cart, checkout and user account pages, all within the WordPress Customizer
Storefront Product Sharing
storefront-product-sharing
Add attractive social sharing icons for Facebook, Twitter, Pinterest and Email to your product pages.
Storefront Footer Bar
storefront-footer-bar
Add a full width widgetised region above the default Storefront footer widget area.
Storefront Hamburger Menu
storefront-hamburger-menu
Storefront Hamburger Menu turns the default handheld navigation into an off-screen sidebar menu with a "hamburger" toggle.
Envíopack (Argentina) Developer Profile
2 plugins · 90 total installs
How We Detect Envíopack (Argentina)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/enviopack-argentina/css/admin.cssHTML / DOM Fingerprints
info-textname="api_key"name="api_secret"name="branch_office"name="packaging_mode"name="shipping_mode"name="default_shipping_status"+2 more/wc-api/ecom-enviopack