
Estimated Delivery for WooCommerce Security & Risk Analysis
wordpress.org/plugins/estimated-delivery-for-woocommerceShow estimated / guaranteed delivery, simple and easy
Is Estimated Delivery for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Estimated Delivery for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "estimated-delivery-for-woocommerce" plugin version 2.0.0 exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and performing nonce and capability checks on all identified entry points. The absence of known CVEs and a clean vulnerability history further suggest a generally secure development approach.
However, there are notable areas of concern. The plugin exposes two AJAX handlers without authentication checks, creating a significant attack surface. While no critical or high severity taint flows were identified, the presence of a flow with unsanitized paths is a potential risk. Additionally, the plugin has a moderate issue with output escaping, with only 50% of outputs being properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if malicious input is processed.
In conclusion, the plugin has a solid foundation in terms of SQL security and access control. The primary risks stem from the unprotected AJAX endpoints and the moderate risk of XSS due to insufficient output escaping. The lack of past vulnerabilities is a positive indicator, but the identified code signals necessitate caution and potential remediation.
Key Concerns
- Unprotected AJAX handlers
- Half of outputs unescaped
- Flows with unsanitized paths
Estimated Delivery for WooCommerce Security Vulnerabilities
Estimated Delivery for WooCommerce Code Analysis
Output Escaping
Data Flow Analysis
Estimated Delivery for WooCommerce Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 22
Maintenance & Trust
Estimated Delivery for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Estimated Delivery for WooCommerce Alternatives
Estimated delivery date per product for WooCommerce
estimate-delivery-date-for-woocommerce
Estimated delivery date per product for WooCommerce
Estimated Delivery Date Per Product For Woocommerce
estimated-delivery-date-per-product-for-woocommerce
Estimated Shipping Date Per Product For WoocommerceThis Plugin allow you to Display Estimated Delivery Date or Shipping Date Per Product.
Estimate delivery per Product for Woocommerce
estimate-delivery-per-product-for-woocommerce
HELP YOUR CUSTOMERS TO DECIDE IF THEY WILL BUY YOUR PRODUCTS!
AnCode — Estimated Delivery Date for WooCommerce
ancode-estimated-delivery-date-for-woocommerce
Display estimated delivery dates automatically on WooCommerce product pages and emails — supports weekends, holidays, and full customization.
EDDV Notices for WooCommerce
eddv-notices
Display Estimated Delivery Date ranges or a Vacation Notice across WooCommerce pages and emails with flexible templates and automatic mode switching.
Estimated Delivery for WooCommerce Developer Profile
6 plugins · 2K total installs
How We Detect Estimated Delivery for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/estimated-delivery-for-woocommerce/css/admin-settings.css/wp-content/plugins/estimated-delivery-for-woocommerce/css/frontend.css/wp-content/plugins/estimated-delivery-for-woocommerce/js/frontend.js/wp-content/plugins/estimated-delivery-for-woocommerce/views/wcfm-metabox.php/wp-content/plugins/estimated-delivery-for-woocommerce/views/wcmp-metabox.php/wp-content/plugins/estimated-delivery-for-woocommerce/views/dokan-metabox.php/wp-content/plugins/estimated-delivery-for-woocommerce/js/frontend.jsestimated-delivery-for-woocommerce/css/admin-settings.css?ver=estimated-delivery-for-woocommerce/css/frontend.css?ver=estimated-delivery-for-woocommerce/js/frontend.js?ver=HTML / DOM Fingerprints
edw-delivery-info<!-- EDW: START REPEATER --><!-- EDW: END REPEATER --><!-- EDW_WCFM_METABOX_START --><!-- EDW_WCFM_METABOX_END -->+4 moredata-edw-max-daysdata-edw-daysdata-edw-days-outstockdata-edw-max-days-outstockdata-edw-modedata-edw-days-backorders+3 morewindow.EDW_USE_JSwindow.EDW_Fontawesome