
Express One Shipment Security & Risk Analysis
wordpress.org/plugins/express-one-shipmentWooCommerce integration with Express One Pickup Point and Home Delivery shipping services.
Is Express One Shipment Safe to Use in 2026?
Generally Safe
Score 100/100Express One Shipment has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The express-one-shipment plugin v1.0.1 exhibits a generally good security posture with significant strengths in its handling of SQL queries, which are all prepared, and a high percentage of properly escaped output. The absence of known vulnerabilities (CVEs) and critical taint flows is also a positive indicator. However, a notable concern is the presence of one AJAX handler that lacks authentication checks. This unprotected entry point, while only one, represents a potential vector for unauthorized actions if it performs sensitive operations. The plugin also makes a moderate number of external HTTP requests, which could be a vector for supply chain attacks if those external resources are compromised, though no direct vulnerabilities are indicated by the provided data.
Overall, the plugin demonstrates good coding practices, particularly in database interactions and output sanitization. The lack of a vulnerability history suggests a history of stable and secure development. The primary area for improvement and attention is addressing the unprotected AJAX handler to ensure all entry points are properly secured. The plugin's strengths outweigh its immediate weaknesses, but the identified unprotected entry point warrants remediation to further strengthen its security profile.
Key Concerns
- AJAX handler without auth checks
Express One Shipment Security Vulnerabilities
Express One Shipment Code Analysis
Output Escaping
Data Flow Analysis
Express One Shipment Attack Surface
AJAX Handlers 5
WordPress Hooks 25
Maintenance & Trust
Express One Shipment Maintenance & Trust
Maintenance Signals
Community Trust
Express One Shipment Alternatives
Local Delivery Drivers for WooCommerce
local-delivery-drivers-for-woocommerce
Improve the way you deliver, manage drivers, assign drivers to orders, send WhatsApp, SMS, and email notifications, route planning, navigation & more!
Woot
woot-ro
Unified shipping solution for WooCommerce. Integrates all popular couriers in Romania with real-time pricing and pickup point selection.
Uber Direct Integration
uber-direct-delivery-integration
Offer instant or scheduled delivery from your WooCommerce store with real-time quotes and Uber Direct integration
UDW Delivery – Uber Direct for WooCommerce
udwdelivery
Delivery service for WooCommerce integrating with Uber Direct API.
Gobuddy – The smart delivery solution
gobuddy-the-smart-delivery-solution
The official Gobuddy plugin for WooCommerce
Express One Shipment Developer Profile
1 plugin · 0 total installs
How We Detect Express One Shipment
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet.css/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet-control-geocoder.css/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet.js/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet-control-geocoder.js/wp-content/plugins/express-one-shipment/assets/js/checkout-map.js/wp-content/plugins/express-one-shipment/assets/images/marker-icon-blue.png/wp-content/plugins/express-one-shipment/assets/images/marker-icon-red.png/wp-content/plugins/express-one-shipment/assets/images/marker-shadow.png+1 more/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet.js/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet-control-geocoder.js/wp-content/plugins/express-one-shipment/assets/js/checkout-map.js/wp-content/plugins/express-one-shipment/assets/js/admin-main-settings.js/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet.css?ver=/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet-control-geocoder.css?ver=/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet.js?ver=/wp-content/plugins/express-one-shipment/assets/vendor/leaflet/leaflet-control-geocoder.js?ver=/wp-content/plugins/express-one-shipment/assets/js/checkout-map.js?ver=/wp-content/plugins/express-one-shipment/assets/js/admin-main-settings.js?ver=HTML / DOM Fingerprints
wc-action-button-download_labelid="express-one-map"expressOnePickupexpressOneAdmin