
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Security & Risk Analysis
wordpress.org/plugins/infixs-correios-automaticoIntegração com correios automatizada (Tudo em um), com ou sem contrato, código de rastreio automático, geração de etiquetas, devolução e muito mais.
Is Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Safe to Use in 2026?
Generally Safe
Score 100/100Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "infixs-correios-automatico" v1.7.1 plugin exhibits a generally good security posture with several strong practices in place. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and a high percentage of properly escaped output are significant strengths. Furthermore, the lack of known CVEs and no recorded vulnerabilities in its history suggest a history of responsible development and maintenance.
However, there are specific concerns that warrant attention. The plugin exposes 2 AJAX handlers without authentication checks, creating a potential attack surface for unauthorized actions. While taint analysis shows no unsanitized paths, the presence of unprotected entry points is a notable risk. The plugin also makes a relatively high number of external HTTP requests (10), which, while not inherently a vulnerability, can be a vector for other attacks if the remote endpoints are compromised or if the plugin does not properly validate the responses.
In conclusion, the plugin has a solid foundation with no critical or high-severity historical vulnerabilities and good internal coding practices. The primary area of concern lies in the unprotected AJAX endpoints. Addressing these unprotected entry points and ensuring robust input validation for external requests would significantly enhance its security. The absence of known vulnerabilities is a positive indicator, but vigilance regarding the identified entry points is crucial.
Key Concerns
- Unprotected AJAX handlers
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Security Vulnerabilities
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Code Analysis
Output Escaping
Data Flow Analysis
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Attack Surface
AJAX Handlers 6
Shortcodes 2
WordPress Hooks 84
Scheduled Events 1
Maintenance & Trust
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Maintenance & Trust
Maintenance Signals
Community Trust
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Alternatives
Virtuaria Correios – Frete, Etiqueta, Rastreio e Declaração
virtuaria-correios
Etiqueta, declaração, rastreio, calculadora, devolução, campos de checkout, descontos, tudo isso na versão grátis, com ou sem contrato. Tem MUITO+
Envio Ecom
envioecom-shipping
Envio Ecom (EnvioEcom): calcula frete em tempo real no checkout com as melhores transportadoras do Brasil. EnvioEcom · envio ecom.
Claudio Sanches – Correios for WooCommerce
woocommerce-correios
Integration between the Correios and WooCommerce
Melhor Envio
melhor-envio-cotacao
Requires Wordpress 4.0+ Requires WooCommerce 4.0+ License: GPLv3 License URI: https://www.gnu.org/licenses/gpl-3.0.html Plugin para cotação e compra d …
Autocomplete Address for WooCommerce
autocomplete-address-for-woocommerce
Preencha automaticamente o endereço a partir do CEP no WooCommerce
Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução Developer Profile
2 plugins · 4K total installs
How We Detect Correios Automático – Rastreio, Frete, Etiqueta, Declaração e Devolução
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/infixs-correios-automatico/assets/admin/css/orders.css/wp-content/plugins/infixs-correios-automatico/assets/admin/js/orders.js/wp-content/plugins/infixs-correios-automatico/assets/admin/js/orders.jsinfixs-correios-automatico/assets/admin/css/orders.css?ver=infixs-correios-automatico/assets/admin/js/orders.js?ver=HTML / DOM Fingerprints
data-page="infixs-correios-automatico"infixsCorreiosAutomaticoOrdersParams/wp-json/infixs-correios-automatico/v1/settings/wp-json/infixs-correios-automatico/v1/integration/wp-json/infixs-correios-automatico/v1/tracking/wp-json/infixs-correios-automatico/v1/order/tracking/wp-json/infixs-correios-automatico/v1/shipping/method/wp-json/infixs-correios-automatico/v1/shipping/calculator/wp-json/infixs-correios-automatico/v1/shipping/calculate/wp-json/infixs-correios-automatico/v1/order/generate/label/wp-json/infixs-correios-automatico/v1/order/generate/declaration/wp-json/infixs-correios-automatico/v1/order/generate/return/wp-json/infixs-correios-automatico/v1/dokan/shipping/method/wp-json/infixs-correios-automatico/v1/dokan/shipping/calculator/wp-json/infixs-correios-automatico/v1/dokan/shipping/calculate/wp-json/infixs-correios-automatico/v1/dokan/order/generate/label/wp-json/infixs-correios-automatico/v1/dokan/order/generate/declaration/wp-json/infixs-correios-automatico/v1/dokan/order/generate/return/wp-json/infixs-correios-automatico/v1/deactivate