
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Security & Risk Analysis
wordpress.org/plugins/jne-shipping-officialPlugin pengiriman JNE resmi untuk WooCommerce di Indonesia. Menyediakan tarif real-time, pembuatan AWB, dan pelacakan pengiriman.
Is JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'jne-shipping-official' v1.8.0 plugin demonstrates a generally good security posture with several strong practices. The absence of any recorded vulnerabilities (CVEs) or critical taint analysis findings is a significant positive indicator. The plugin also makes extensive use of prepared statements for SQL queries and a high percentage of properly escaped output, which are crucial for preventing common web vulnerabilities. The presence of numerous nonce and capability checks further suggests a thoughtful approach to access control for its entry points.
However, there are specific areas that warrant concern and introduce risk. The analysis identified two AJAX handlers that lack authentication checks. This is a significant weakness as it exposes potential functionality to unauthenticated users, creating an attack vector. While the taint analysis found no unsanitized paths, the presence of unprotected AJAX endpoints means that malicious input could still be processed in unexpected ways, potentially leading to unintended consequences or further exploitation if vulnerabilities exist within those specific functions.
In conclusion, while the plugin benefits from a clean vulnerability history and robust defensive coding in most areas, the two unprotected AJAX endpoints represent a clear and actionable security risk. Addressing these specific entry points with proper authentication and authorization checks should be the immediate priority. The large number of AJAX handlers overall, even with most being protected, contributes to a substantial attack surface that requires ongoing vigilance.
Key Concerns
- Unprotected AJAX handlers
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Security Vulnerabilities
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Attack Surface
AJAX Handlers 24
REST API Routes 2
WordPress Hooks 85
Scheduled Events 3
Maintenance & Trust
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Alternatives
The Courier Guy Shipping for WooCommerce
the-courier-guy
This is the official WooCommerce extension to ship products using The Courier Guy.
Local Delivery Drivers for WooCommerce
local-delivery-drivers-for-woocommerce
Improve the way you deliver, manage drivers, assign drivers to orders, send WhatsApp, SMS, and email notifications, route planning, navigation & more!
Bob Go smart shipping solution for WooCommerce
uafrica-shipping
Smart shipping and order management solution in South Africa
FlagShip WooCommerce Shipping
flagship-woocommerce-shipping
FlagShip WooCommerce Shipping is an e-shipping courier solution that helps you shipping anything from Canada. Beautifully.
AgenWebsite Shipping – Plugin Ongkos Kirim & Generate Resi Otomatis Semua Kurir Indonesia
woocommerce-jne
Otomatisasi pengiriman WooCommerce dengan kurir terpercaya Indonesia. Tarif real-time, pelacakan instan, cetak resi otomatis - tanpa hitung manual!
JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce Developer Profile
1 plugin · 10 total installs
How We Detect JNE Shipping – Plugin Ongkos Kirim Resmi Untuk WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/jne-shipping-official/admin/css/jne-shipping-official-admin.css/wp-content/plugins/jne-shipping-official/admin/js/jne-shipping-official-admin.js/wp-content/plugins/jne-shipping-official/public/css/jne-shipping-official-public.css/wp-content/plugins/jne-shipping-official/public/js/jne-shipping-official-public.js/wp-content/plugins/jne-shipping-official/admin/js/jne-shipping-official-admin.js/wp-content/plugins/jne-shipping-official/public/js/jne-shipping-official-public.jsjne-shipping-official-admin.css?ver=jne-shipping-official-admin.js?ver=jne-shipping-official-public.css?ver=jne-shipping-official-public.js?ver=HTML / DOM Fingerprints
jne-shipping-official-admin-wrapjne-shipping-official-public-wrapdata-origindata-destinationjne_shipping_public_paramsjne_shipping_admin_paramsjne_shipping_admin_object/wp-json/jneshof/v1/shipping-methods/wp-json/jneshof/v1/shipping-packages[jne_shipping_calculator][jne_shipping_rates]