fatture.help for WooCommerce Security & Risk Analysis

wordpress.org/plugins/fatture-help-wc

Collega WooCommerce a fatture.help e automatizza la fatturazione elettronica. Zero canoni fissi costosi, paghi solo in base al tuo reale volume d&#039 …

10 active installs v1.2.0 PHP 7.4+ WP 5.2+ Updated Mar 11, 2026
bollo-in-fatturafatturefatture-elettronichesdiwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is fatture.help for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

fatture.help for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 24d ago
Risk Assessment

The "fatture-help-wc" v1.2.0 plugin exhibits a generally positive security posture, with a strong adherence to secure coding practices. The code demonstrates a high percentage of prepared SQL statements and properly escaped output, which are crucial for preventing common web vulnerabilities. The absence of known CVEs and a clean vulnerability history further bolster confidence in its security. The plugin also shows good use of nonce and capability checks where applicable.

However, there are notable areas for improvement. The presence of 9 AJAX handlers, with 2 lacking authentication checks, presents a significant attack surface. While taint analysis did not reveal any critical or high-severity issues, these unprotected AJAX endpoints could potentially be exploited by unauthenticated users, leading to unintended actions if not properly secured within their code. The plugin also makes one external HTTP request, which, while not inherently a vulnerability, is a potential point of failure or exfiltration if not handled securely.

Overall, "fatture-help-wc" v1.2.0 has a solid foundation with good security practices. The main concern lies in the unprotected AJAX endpoints, which require immediate attention. Addressing these specific entry points would significantly enhance the plugin's security. The lack of past vulnerabilities is a positive indicator of responsible development, but vigilance is always necessary, especially with open entry points.

Key Concerns

  • Unprotected AJAX handlers
  • External HTTP request
Vulnerabilities
None known

fatture.help for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

fatture.help for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
18 prepared
Unescaped Output
16
158 escaped
Nonce Checks
7
Capability Checks
7
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

95% prepared19 total queries

Output Escaping

91% escaped174 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<Fields> (classes\Fields.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

fatture.help for WooCommerce Attack Surface

Entry Points9
Unprotected2

AJAX Handlers 9

authwp_ajax_fatturehelp-wc-openPDFclasses\Fields.php:53
authwp_ajax_fatturehelp-wc-downloadPDFclasses\Fields.php:54
authwp_ajax_fatturehelp-wc-openDDTclasses\Fields.php:55
authwp_ajax_fatturehelp-wc-downloadDDTclasses\Fields.php:56
authwp_ajax_fatturehelp-wc-downloadXMLclasses\Fields.php:57
authwp_ajax_fatturehelp_wc-setCookiefatture-help-wc.php:719
authwp_ajax_fatturehelp_savesettingsfatture-help-wc.php:720
authwp_ajax_fatturehelp_vies_checkfatture-help-wc.php:723
noprivwp_ajax_fatturehelp_vies_checkfatture-help-wc.php:724
WordPress Hooks 56
actionwoocommerce_before_cart_contentsclasses\Bollo.php:19
actionwoocommerce_checkout_before_order_reviewclasses\Bollo.php:20
actionwoocommerce_add_to_cartclasses\Bollo.php:21
actionwoocommerce_applied_couponclasses\Bollo.php:22
actionwoocommerce_cart_item_restoredclasses\Bollo.php:23
actionwoocommerce_cart_item_removedclasses\Bollo.php:24
filterwoocommerce_update_cart_action_cart_updatedclasses\Bollo.php:25
filterwoocommerce_cart_item_remove_linkclasses\Bollo.php:26
actionwoocommerce_cart_item_removedclasses\Bollo.php:99
actionwoocommerce_before_checkout_billing_formclasses\Fields.php:25
actionwoocommerce_checkout_order_processedclasses\Fields.php:26
actionwoocommerce_process_shop_order_metaclasses\Fields.php:27
actionwoocommerce_account_edit-address_endpointclasses\Fields.php:30
actionedit_user_profileclasses\Fields.php:31
actionshow_user_profileclasses\Fields.php:32
filterwoocommerce_billing_fieldsclasses\Fields.php:33
filterwoocommerce_checkout_fieldsclasses\Fields.php:34
filterwoocommerce_customer_meta_fieldsclasses\Fields.php:35
actionwoocommerce_after_checkout_validationclasses\Fields.php:38
filterwoocommerce_admin_billing_fieldsclasses\Fields.php:41
actionwoocommerce_admin_order_data_after_billing_addressclasses\Fields.php:42
filterwoocommerce_ajax_get_customer_detailsclasses\Fields.php:43
actionwoocommerce_process_shop_order_metaclasses\Fields.php:44
actionadd_meta_boxesclasses\Fields.php:45
actionadmin_enqueue_scriptsclasses\Fields.php:46
filterwoocommerce_admin_order_preview_get_order_detailsclasses\Fields.php:49
actionwoocommerce_admin_order_preview_startclasses\Fields.php:50
filtermanage_woocommerce_page_wc-orders_columnsclasses\Fields.php:65
actionmanage_woocommerce_page_wc-orders_custom_columnclasses\Fields.php:66
actionwoocommerce_order_list_table_restrict_manage_ordersclasses\Fields.php:67
filterwoocommerce_order_list_table_prepare_items_query_argsclasses\Fields.php:68
filterwoocommerce_order_list_table_viewsclasses\Fields.php:69
filterbulk_actions-woocommerce_page_wc-ordersclasses\Fields.php:72
actionhandle_bulk_actions-woocommerce_page_wc-ordersclasses\Fields.php:73
actionrestrict_manage_postsclasses\Fields.php:78
filterparse_queryclasses\Fields.php:79
filterviews_edit-shop_orderclasses\Fields.php:80
filterwoocommerce_order_formatted_billing_addressclasses\Fields.php:88
filterwoocommerce_localisation_address_formatsclasses\Fields.php:89
filterwoocommerce_formatted_address_replacementsclasses\Fields.php:90
actionadmin_footerclasses\Fields.php:92
actionadmin_noticesclasses\Fields.php:659
filterposts_joinclasses\Fields.php:1652
filterposts_whereclasses\Fields.php:1663
filterposts_whereclasses\Fields.php:1690
actionbefore_woocommerce_initfatture-help-wc.php:23
filtercron_schedulesfatture-help-wc.php:709
actionfatture-help-wc_cronfatture-help-wc.php:710
actionfatturehelp-wc_migration_cronfatture-help-wc.php:711
actionplugins_loadedfatture-help-wc.php:714
filterwoocommerce_hpos_sync_ignored_order_propsfatture-help-wc.php:716
actionplugins_loadedfatture-help-wc.php:717
actioninitfatture-help-wc.php:718
actionadmin_noticesfatture-help-wc.php:729
actionwoocommerce_settings_tabs_arrayfatture-help-wc.php:751
actionwoocommerce_settings_tabs_fatturehelpfatture-help-wc.php:752

Scheduled Events 3

fatture-help-wc_cron
fatturehelp-wc_migration_cron
fatture-help-wc_cron
Maintenance & Trust

fatture.help for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMar 11, 2026
PHP min version7.4
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

fatture.help for WooCommerce Developer Profile

stefanoai

2 plugins · 8K total installs

76
trust score
Avg Security Score
96/100
Avg Patch Time
126 days
View full developer profile
Detection Fingerprints

How We Detect fatture.help for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/fatture-help-wc/dist/css/bundle.css/wp-content/plugins/fatture-help-wc/dist/js/bundle.js/wp-content/plugins/fatture-help-wc/assets/css/styles.css/wp-content/plugins/fatture-help-wc/assets/js/script.js
Script Paths
/wp-content/plugins/fatture-help-wc/dist/js/bundle.js/wp-content/plugins/fatture-help-wc/assets/js/script.js
Version Parameters
fatture-help-wc/dist/css/bundle.css?ver=fatture-help-wc/dist/js/bundle.js?ver=fatture-help-wc/assets/css/styles.css?ver=fatture-help-wc/assets/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
fatture-help-wc-admin-settingsfatture-help-wc-noticefatture-help-wc-barcode-generator
HTML Comments
<!-- fatture.help for WC Settings --><!-- fatture.help for WC Admin Notice --><!-- fatture.help for WC Barcode Generator -->
Data Attributes
data-fatture-help-wc-settingsdata-fatture-help-wc-order-iddata-fatture-help-wc-barcode-data
JS Globals
fattureHelpWcAdminfattureHelpWcSettingsfattureHelpWcGenerateInvoicefattureHelpWcBarcode
REST Endpoints
/wp-json/fatture-help-wc/v1/settings/wp-json/fatture-help-wc/v1/generate-invoice/wp-json/fatture-help-wc/v1/barcode
Shortcode Output
[fatture_help_wc_settings][fatture_help_wc_invoice_generator][fatture_help_wc_barcode]
FAQ

Frequently Asked Questions about fatture.help for WooCommerce