
Inpost Paczkomaty Security & Risk Analysis
wordpress.org/plugins/inpost-paczkomatyUmożliwia dodanie Paczkomaty Inpost jako forma dostawy produktów. Zawiera mapkę gdzie można wybrać paczkomat w którym chce się odebrać przesyłkę.
Is Inpost Paczkomaty Safe to Use in 2026?
Generally Safe
Score 85/100Inpost Paczkomaty has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "inpost-paczkomaty" plugin version 1.0.34 exhibits a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for SQL queries, avoiding dangerous functions, and properly escaping the vast majority of its output. There are also no known vulnerabilities recorded for this plugin, suggesting a history of stable and secure development or a lack of targeted attacks.
However, a significant concern arises from the static analysis of its attack surface. Out of four identified entry points, three are AJAX handlers that lack any authentication checks. This exposes these handlers to potential exploitation by unauthenticated users, creating a substantial risk. The absence of taint analysis data makes it impossible to assess the impact of these unprotected AJAX handlers, but their presence alone is a critical security weakness. The lack of nonce checks on these AJAX handlers is also a notable omission.
In conclusion, while the plugin has strong fundamentals in SQL and output handling and a clean vulnerability history, the unprotected AJAX endpoints are a major vulnerability. The absence of authentication on these critical entry points overshadows its other strengths, making it a target for attackers seeking to exploit unauthenticated functionality.
Key Concerns
- Unprotected AJAX handlers
- Missing nonce checks on AJAX
- Capability checks are minimal
Inpost Paczkomaty Security Vulnerabilities
Inpost Paczkomaty Code Analysis
Output Escaping
Inpost Paczkomaty Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 15
Maintenance & Trust
Inpost Paczkomaty Maintenance & Trust
Maintenance Signals
Community Trust
Inpost Paczkomaty Alternatives
InPost PL
inpost-for-woocommerce
InPost PL dla WooCommerce to dedykowana wtyczka do integracji, stworzona z myślą o małych i średnich firmach, które chcą w szybki i wygodny sposób zin …
Inpost International
inpost-international
InPost International is the official free InPost app for international delivery services.
Apaczka: integracja z WooCommerce
apaczka-pl
Zarządzaj wysyłkami różnych kurierów w jednym miejscu
MultiParcels Shipping For WooCommerce
multiparcels-shipping-for-woocommerce
Easiest, fastest and the cheapest way to integrate couriers with all deliveries methods to send parcels with just a few button clicks.
InPost Italy
inpost-italy
Permetti ai tuoi clienti di scegliere InPost come corriere in fase di check-out e selezionare il punto di ritiro InPost più comodo attraverso il nostr …
Inpost Paczkomaty Developer Profile
1 plugin · 8K total installs
How We Detect Inpost Paczkomaty
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/inpost-paczkomaty/assets/css/inpost.css/wp-content/plugins/inpost-paczkomaty/assets/js/inpost-paczkomaty-admin.js/wp-content/plugins/inpost-paczkomaty/assets/js/inpost-paczkomaty-frontend.js/wp-content/plugins/inpost-paczkomaty/assets/js/inpost-paczkomaty-admin.js/wp-content/plugins/inpost-paczkomaty/assets/js/inpost-paczkomaty-frontend.js/wp-content/plugins/inpost-paczkomaty/assets/css/inpost.css?ver=/wp-content/plugins/inpost-paczkomaty/assets/js/inpost-paczkomaty-admin.js?ver=/wp-content/plugins/inpost-paczkomaty/assets/js/inpost-paczkomaty-frontend.js?ver=HTML / DOM Fingerprints
inpost_paczkomaty_shipping_method<!-- Settings inpost-paczkomaty --><!-- This is the meta box for settings -->data-inpost-map-urldata-inpost-api-keyinpostPaczkomatyAdmininpostPaczkomatyFrontend/wp-json/inpost-paczkomaty/v1/settings/wp-json/inpost-paczkomaty/v1/shipping-options[inpost_map][inpost_shipping_options]