Hillebrand Gori eShipping for WooCommerce Security & Risk Analysis

wordpress.org/plugins/hillebrand-gori-eshipping

Ship wines, beers and spirits or any beverages through Hillebrand Gori.

0 active installs v1.0.8 PHP 8.3+ WP 6.8+ Updated Mar 12, 2026
ecommerceonline-storeshippingspiritswine
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Hillebrand Gori eShipping for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Hillebrand Gori eShipping for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 23d ago
Risk Assessment

The 'hillebrand-gori-eshipping' plugin version 1.0.8 presents a generally strong security posture with a notable absence of known vulnerabilities and a clean static analysis report. The plugin demonstrates good security practices by utilizing prepared statements for all SQL queries and having a high percentage of properly escaped output, minimizing the risk of common injection and XSS attacks. The presence of nonce and capability checks, although limited in number, indicates an awareness of WordPress security fundamentals.

However, the static analysis does flag two flows with unsanitized paths. While the taint analysis did not assign a critical or high severity to these flows, they represent potential weaknesses that could be exploited in combination with other factors or if specific conditions are met. The plugin also bundles the Guzzle library, which, if outdated or containing its own vulnerabilities, could introduce risks. The complete lack of documented CVEs and historical vulnerabilities is a positive indicator, suggesting a well-maintained and secure codebase to date.

In conclusion, 'hillebrand-gori-eshipping' v1.0.8 appears to be a secure plugin with strong adherence to best practices for SQL and output handling. The primary area of concern lies with the two identified flows with unsanitized paths, which warrant further investigation to ensure they do not pose a practical security risk. The absence of historical vulnerabilities is a significant strength.

Key Concerns

  • Flows with unsanitized paths detected
  • Bundled Guzzle library
Vulnerabilities
None known

Hillebrand Gori eShipping for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Hillebrand Gori eShipping for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
51 escaped
Nonce Checks
4
Capability Checks
2
File Operations
4
External Requests
0
Bundled Libraries
1

Bundled Libraries

Guzzle

Output Escaping

94% escaped54 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

6 flows2 with unsanitized paths
getAttachmentListJson (src\WooCommerce\Model\Order.php:494)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Hillebrand Gori eShipping for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 46
actionadmin_menusrc\Admin\Menu.php:14
actionwoocommerce_before_order_itemmetasrc\Admin\Order\ShippingMethodRow.php:23
actionwoocommerce_after_order_itemmetasrc\Admin\Order\ShippingMethodRow.php:24
filterwoocommerce_hidden_order_itemmetasrc\Admin\Order\ShippingMethodRow.php:25
actionwoocommerce_admin_order_totals_after_shippingsrc\Admin\Order\ShippingMethodRow.php:26
filterwoocommerce_product_classsrc\Admin\Products\ProductMeta.php:21
filterwoocommerce_product_data_tabssrc\Admin\Products\ProductMeta.php:30
actionwoocommerce_product_data_panelssrc\Admin\Products\ProductMeta.php:31
actionwoocommerce_process_product_metasrc\Admin\Products\ProductMeta.php:32
actionwoocommerce_product_after_variable_attributessrc\Admin\Products\ProductMeta.php:33
actionwoocommerce_save_product_variationsrc\Admin\Products\ProductMeta.php:34
filterwoocommerce_product_classsrc\Admin\Products\ProductMeta.php:35
filterwoocommerce_product_data_tabssrc\Admin\Products\ProductMeta.php:36
actionwoocommerce_product_options_shippingsrc\Admin\Products\ProductMeta.php:37
actioninitsrc\App.php:64
actioninitsrc\App.php:91
actionwp_enqueue_scriptssrc\Assets\Scripts.php:20
actionadmin_enqueue_scriptssrc\Assets\Scripts.php:28
actionwp_enqueue_scriptssrc\Assets\Styles.php:12
actionadmin_enqueue_scriptssrc\Assets\Styles.php:20
actionadmin_initsrc\Router\Router.php:109
actionwoocommerce_checkout_create_ordersrc\WooCommerce\Model\Order.php:70
actionwoocommerce_order_edit_statussrc\WooCommerce\Model\Order.php:71
actionwoocommerce_order_edit_statussrc\WooCommerce\Model\Order.php:72
actionwoocommerce_thankyousrc\WooCommerce\Model\Order.php:73
filterwp_insert_post_datasrc\WooCommerce\Model\Product.php:13
actionadmin_noticessrc\WooCommerce\Model\Product.php:14
filterredirect_post_locationsrc\WooCommerce\Model\Product.php:56
filterwoocommerce_shipping_methodssrc\WooCommerce\Model\ShippingMethod.php:45
filterwoocommerce_data_storessrc\WooCommerce\ProductType\SimpleBottleProduct.php:15
filterproduct_type_selectorsrc\WooCommerce\ProductType\SimpleBottleProduct.php:23
filterwoocommerce_data_storessrc\WooCommerce\ProductType\SimpleBottleProduct.php:24
filterwoocommerce_data_storessrc\WooCommerce\ProductType\VariableBottleProduct.php:16
filterproduct_type_selectorsrc\WooCommerce\ProductType\VariableBottleProduct.php:73
filterwoocommerce_data_storessrc\WooCommerce\ProductType\VariableBottleProduct.php:74
filterwoocommerce_package_ratessrc\WooCommerce\Render\ClassicUiRender.php:13
filterwoocommerce_cart_shipping_method_full_labelsrc\WooCommerce\Render\ClassicUiRender.php:14
filterwoocommerce_review_order_before_paymentsrc\WooCommerce\Render\ClassicUiRender.php:15
filterwoocommerce_cart_shipping_packagessrc\WooCommerce\Render\ClassicUiRender.php:16
filterwoocommerce_order_get_formatted_shipping_addresssrc\WooCommerce\Render\PickupPointsRender.php:20
actionwoocommerce_blocks_loadedsrc\WooCommerce\ShippingAddressFields.php:101
actionwoocommerce_checkout_create_ordersrc\WooCommerce\ShippingAddressFields.php:102
filterwoocommerce_order_get_formatted_shipping_addresssrc\WooCommerce\ShippingAddressFields.php:103
filterwoocommerce_checkout_fieldssrc\WooCommerce\ShippingAddressFields.php:104
filterwoocommerce_admin_order_data_after_shipping_addresssrc\WooCommerce\ShippingAddressFields.php:109
actioninitsrc\WooCommerce\ShippingClass\BottleShippingClass.php:20
Maintenance & Trust

Hillebrand Gori eShipping for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMar 12, 2026
PHP min version8.3
Downloads380

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Hillebrand Gori eShipping for WooCommerce Developer Profile

hillebrandgori

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Hillebrand Gori eShipping for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hillebrand-gori-eshipping/assets/css/checkout.css/wp-content/plugins/hillebrand-gori-eshipping/assets/css/shipping-rates-classic.css/wp-content/plugins/hillebrand-gori-eshipping/assets/css/modal.css/wp-content/plugins/hillebrand-gori-eshipping/dist/shippingRatesFill.css/wp-content/plugins/hillebrand-gori-eshipping/dist/shippingRatesFill.js/wp-content/plugins/hillebrand-gori-eshipping/dist/orderRecapFill.js/wp-content/plugins/hillebrand-gori-eshipping/assets/js/apiClient.js/wp-content/plugins/hillebrand-gori-eshipping/assets/js/classicLeafletMap.js+10 more
Script Paths
dist/shippingRatesFill.jsdist/orderRecapFill.jsassets/js/apiClient.jsassets/js/classicLeafletMap.jsassets/js/apiClientInit.jsassets/js/classicPickupMap.js+8 more

HTML / DOM Fingerprints

JS Globals
window.hges
FAQ

Frequently Asked Questions about Hillebrand Gori eShipping for WooCommerce