
Gellum Delivery Calculator for WooCommerce Security & Risk Analysis
wordpress.org/plugins/gellum-delivery-calculatorCalculates shipping costs for WooCommerce based on GPS distance with GeoJSON limited areas. Shortcode [gellumdcw_map]
Is Gellum Delivery Calculator for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Gellum Delivery Calculator for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The gellum-delivery-calculator plugin v1.1.3 exhibits a generally good security posture based on the provided static analysis. It effectively utilizes prepared statements for all SQL queries, a critical practice for preventing SQL injection vulnerabilities. The plugin also demonstrates a high rate of proper output escaping, mitigating risks of cross-site scripting (XSS) attacks. The absence of file operations and external HTTP requests further reduces the potential attack surface.
However, a notable concern is the lack of capability checks on AJAX handlers. While nonces are present on two of these handlers, the absence of explicit capability checks means that any user, regardless of their role or permissions, could potentially interact with these endpoints. This creates a significant risk if the AJAX handlers perform sensitive operations or expose information. The taint analysis revealing zero flows is a positive sign, indicating no immediate critical or high-severity vulnerabilities were detected by that specific method. The plugin's clean vulnerability history with no recorded CVEs suggests it has been relatively secure in the past, or that vulnerabilities have been promptly addressed.
In conclusion, while the plugin has strong foundations in preventing common web vulnerabilities like SQL injection and XSS, the unauthenticated AJAX handlers represent a significant weakness. The lack of capability checks on these entry points needs to be addressed to ensure that only authorized users can trigger plugin functionalities. The absence of any recorded vulnerabilities historically is a positive indicator, but the current analysis highlights a specific area requiring improvement.
Key Concerns
- AJAX handlers without capability checks
- Output escaping rate below 100%
Gellum Delivery Calculator for WooCommerce Security Vulnerabilities
Gellum Delivery Calculator for WooCommerce Code Analysis
Output Escaping
Gellum Delivery Calculator for WooCommerce Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 14
Maintenance & Trust
Gellum Delivery Calculator for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Gellum Delivery Calculator for WooCommerce Alternatives
WooReer
wcsdm
WooReer calculates shipping rates based on distance via Google Maps, Mapbox, DistanceMatrix.ai, Geoapify, or HERE.
Calculate Prices based on Distance For WooCommerce
calculate-prices-based-on-distance-for-woocommerce
The best WooCommerce Distance Rate Shipping alternative. Secure delivery fee calculation by KM/Mile via Google Maps. Supports Block Checkout & Del …
CityCourier – Local Courier Booking & Tracking System
citycourier-local-courier-booking-tracking-system
Courier booking form with Google Maps integration, distance-based pricing, delivery zones, map picker, and order tracking. Built for WooCommerce.
Ship Distance
ship-distance
Restrict WooCommerce shipping based on distance from your store location using Google Maps Distance Matrix API.
Smart COD for WooCommerce
wc-smart-cod
All the COD restrictions and extra fees you'll ever need, in a single plugin.
Gellum Delivery Calculator for WooCommerce Developer Profile
2 plugins · 30 total installs
How We Detect Gellum Delivery Calculator for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/gellum-delivery-calculator/assets/css/gellumdcw-frontend.css/wp-content/plugins/gellum-delivery-calculator/assets/js/gellumdcw-frontend.jshttps://maps.googleapis.com/maps/api/js?key=/wp-content/plugins/gellum-delivery-calculator/assets/js/gellumdcw-frontend.jsgellum-delivery-calculator/assets/css/gellumdcw-frontend.css?ver=gellum-delivery-calculator/assets/js/gellumdcw-frontend.js?ver=https://maps.googleapis.com/maps/api/js?key=&libraries=geometry,places,geocoding,marker&callback=gellumdcwInitMap&ver=HTML / DOM Fingerprints
gellumdcw-map-container<!-- Gellum Delivery Calculator Map -->data-map-iddata-store-latdata-store-lngdata-delivery-area-geojsondata-calculation-modedata-distance-unit+1 moregellumdcw_params[gellumdcw_map]