EuroParcel Integration for WooCommerce Security & Risk Analysis

wordpress.org/plugins/europarcel-com

Save up to 50% on shipping costs with EuroParcel. Access negotiated rates from top Romanian couriers directly in your WooCommerce store.

50 active installs v1.0.8 PHP 7.4+ WP 5.0+ Updated Mar 9, 2026
couriereuroparcelromaniashippingwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is EuroParcel Integration for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

EuroParcel Integration for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 25d ago
Risk Assessment

The europarcel-com v1.0.8 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by not utilizing dangerous functions, performing all SQL queries using prepared statements, and escaping the vast majority of its output. It also has a clean vulnerability history with no known CVEs, suggesting a history of responsible development or a lack of previous exploitation.

However, significant concerns arise from the attack surface analysis. The plugin exposes four AJAX handlers, all of which lack authentication checks. This is a critical oversight, as it means any user, including unauthenticated visitors, could potentially trigger these handlers, leading to unintended actions or information disclosure if these handlers perform sensitive operations. The absence of any recorded vulnerability history, while seemingly positive, can also be a double-edged sword. It might indicate good security practices, or it could mean the plugin hasn't been a target or thoroughly audited for vulnerabilities.

In conclusion, while the core coding practices regarding SQL and output sanitization are strong, the lack of authentication on all identified AJAX entry points presents a substantial and immediate security risk. This oversight could be exploited to compromise site functionality or data. The plugin's strengths lie in its clean SQL and output handling, but this is significantly undermined by its vulnerable AJAX endpoints.

Key Concerns

  • AJAX handlers without auth checks
  • All AJAX handlers lack auth checks
  • Low output escaping coverage
Vulnerabilities
None known

EuroParcel Integration for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

EuroParcel Integration for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
25 escaped
Nonce Checks
3
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

96% escaped26 total outputs
Attack Surface
4 unprotected

EuroParcel Integration for WooCommerce Attack Surface

Entry Points4
Unprotected4

AJAX Handlers 4

authwp_ajax_europarcelcomwc_get_locker_carriersincludes\class-europarcel-main.php:107
noprivwp_ajax_europarcelcomwc_get_locker_carriersincludes\class-europarcel-main.php:108
authwp_ajax_europarcelcomwc_update_locker_shippingincludes\class-europarcel-main.php:109
noprivwp_ajax_europarcelcomwc_update_locker_shippingincludes\class-europarcel-main.php:110
WordPress Hooks 7
actionbefore_woocommerce_initeuroparcel-com.php:69
actionwoocommerce_shipping_initeuroparcel-com.php:80
filterwoocommerce_shipping_methodseuroparcel-com.php:90
actionadmin_enqueue_scriptseuroparcel-com.php:111
filterplugin_row_metaeuroparcel-com.php:140
actionwp_footerincludes\class-europarcel-main.php:113
actionwoocommerce_review_order_after_shippingincludes\class-europarcel-main.php:116
Maintenance & Trust

EuroParcel Integration for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 9, 2026
PHP min version7.4
Downloads399

Community Trust

Rating0/100
Number of ratings0
Active installs50
Developer Profile

EuroParcel Integration for WooCommerce Developer Profile

EuroParcel

1 plugin · 50 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect EuroParcel Integration for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/europarcel-com/assets/css/europarcel-admin.css/wp-content/plugins/europarcel-com/assets/js/europarcel-admin.js/wp-content/plugins/europarcel-com/assets/js/europarcel-modal.js/wp-content/plugins/europarcel-com/assets/js/europarcel-locker-selector.js
Script Paths
assets/js/europarcel-admin.jsassets/js/europarcel-modal.jsassets/js/europarcel-locker-selector.js
Version Parameters
europarcel-admin.css?ver=1.0.8europarcel-admin.js?ver=1.0.8europarcel-modal.js?ver=1.0europarcel-locker-selector.js?ver=2.8

HTML / DOM Fingerprints

CSS Classes
europarcel-locker-selection-map
HTML Comments
<!-- EuroParcel Checkout Handler --><!-- EuroParcel Checkout Class --><!-- EuroParcel Locker Selector --><!-- EuroParcel Checkout Handler -->+1 more
Data Attributes
data-plugin-pathdata-europarcel-wc-api-url
JS Globals
europarcel_wc_paramseuroparcel_wc_params_localize
FAQ

Frequently Asked Questions about EuroParcel Integration for WooCommerce