
Frakt123 Security & Risk Analysis
wordpress.org/plugins/frakt123Frakt123 makes B2C and B2B shipping in Norway easy and affordable. With this plugin, you can easily transfer order-data from WooCommerce to Frakt123.
Is Frakt123 Safe to Use in 2026?
Generally Safe
Score 100/100Frakt123 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "frakt123" v3.6 plugin presents a mixed security posture. On the positive side, it demonstrates good practices by not utilizing dangerous functions, performing SQL queries exclusively with prepared statements, and properly escaping all identified output. It also has no known vulnerabilities in its history, suggesting a generally stable development approach. However, significant concerns arise from its attack surface. The plugin exposes two AJAX handlers that lack any authentication checks, creating direct entry points for potential attackers to exploit. This absence of nonce and capability checks on these handlers is a critical oversight. While the taint analysis shows no immediate critical or high severity flows, the lack of protective measures on these entry points means that any future vulnerabilities introduced in the logic handling these AJAX requests could be easily exploited. The plugin's reliance on external HTTP requests, while not inherently a vulnerability, adds a minor indirect risk if the external services are compromised or unavailable, but this is not a direct code flaw.
In conclusion, "frakt123" v3.6 has strengths in its core code hygiene regarding SQL and output escaping. However, the unprotected AJAX endpoints are a substantial security weakness that significantly elevates its risk profile. The absence of any vulnerability history is encouraging but does not negate the immediate risks posed by the exposed AJAX handlers. The plugin would benefit greatly from implementing robust authentication and authorization checks on all its entry points.
Key Concerns
- AJAX handlers without authentication
- AJAX handlers without capability checks
- No nonce checks on entry points
Frakt123 Security Vulnerabilities
Frakt123 Code Analysis
Output Escaping
Frakt123 Attack Surface
AJAX Handlers 2
WordPress Hooks 6
Maintenance & Trust
Frakt123 Maintenance & Trust
Maintenance Signals
Community Trust
Frakt123 Alternatives
Advanced Shipment Tracking for WooCommerce
woo-advanced-shipment-tracking
Add shipment tracking info to WooCommerce orders, send tracking numbers to customers via email, and let them track deliveries from My Account.
Orders Tracking for WooCommerce
woo-orders-tracking
Easily import/manage your tracking numbers, add tracking numbers to PayPal and send email notifications to customers.
AfterShip Tracking – All-In-One WooCommerce Order Tracking (Free plan available)
aftership-woocommerce-tracking
Track orders in one place. shipment tracking, automated notifications, order lookup, branded tracking page, delivery day prediction
ParcelWILL (Formerly ParcelPanel) – Shipment Tracking, Tracking & Order Tracking for WooCommerce
parcelpanel
Free Plan Available. Order Tracking, Shipment Tracking. The best WooCommerce Order Tracker for Track Order Status & Delivery Notifications
TrackShip for WooCommerce
trackship-for-woocommerce
TrackShip auto-tracks orders, adds a branded tracking experience to your store and handles all customer touchpoints from shipping to delivery
Frakt123 Developer Profile
1 plugin · 90 total installs
How We Detect Frakt123
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/frakt123/assets/js/meta-boxes-order-frakt123.js/wp-content/plugins/frakt123/assets/js/meta-boxes-order-frakt123.jsfrakt123/assets/js/meta-boxes-order-frakt123.js?ver=HTML / DOM Fingerprints
/wp-json/frakt123/v1/response/wp-json/frakt123/v1/shipment