Lexiata Weight Based Shipping Security & Risk Analysis

wordpress.org/plugins/lexiata-weight-based-shipping

Flexible WooCommerce shipping plugin that calculates costs by weight, with free-shipping and COD control options.

0 active installs v2.0.0 PHP 7.4+ WP 5.8+ Updated Jan 31, 2026
deliveryecommercefree-shippingweight-basedwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Lexiata Weight Based Shipping Safe to Use in 2026?

Generally Safe

Score 100/100

Lexiata Weight Based Shipping has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "lexiata-weight-based-shipping" v2.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, file operations, external HTTP requests, or vulnerabilities in SQL queries and output escaping suggests adherence to secure coding practices. Furthermore, the complete lack of known CVEs, including critical and high-severity ones, and no recorded history of past vulnerabilities reinforce this positive assessment. The plugin appears to have a minimal attack surface, with no AJAX handlers, REST API routes, shortcodes, or cron events that would typically present entry points for attackers. The total absence of taint analysis findings further indicates a robust approach to handling user-supplied data. However, the complete lack of nonce checks and capability checks across all entry points, although currently theoretical due to the absence of such entry points, represents a potential area for future concern if the plugin were to evolve to include more interactive features without implementing proper authorization and integrity checks.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Lexiata Weight Based Shipping Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Lexiata Weight Based Shipping Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

Lexiata Weight Based Shipping Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionwoocommerce_shipping_initlexiata-weight-based-shipping.php:115
filterwoocommerce_shipping_methodslexiata-weight-based-shipping.php:121
filterwoocommerce_get_settings_checkoutlexiata-weight-based-shipping.php:124
filterwoocommerce_available_payment_gatewayslexiata-weight-based-shipping.php:136
actionadmin_menulexiata-weight-based-shipping.php:159
Maintenance & Trust

Lexiata Weight Based Shipping Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 31, 2026
PHP min version7.4
Downloads248

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Lexiata Weight Based Shipping Developer Profile

Suresh Lasantha

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Lexiata Weight Based Shipping

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/lexiata-weight-based-shipping/css/admin.css/wp-content/plugins/lexiata-weight-based-shipping/js/admin.js
Version Parameters
lexiata-weight-based-shipping/css/admin.css?ver=lexiata-weight-based-shipping/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
lexiwbs-cod-restriction-enabledlexiwbs-cod-min-totallexiwbs-cod-max-total
HTML Comments
COD SettingsMARKETING: "LEXIATA ORIGINAL" UPSELL UI (WITH ICON)
Data Attributes
id="lexiwbs_cod_restriction_title"id="lexiwbs_cod_restriction_enabled"id="lexiwbs_cod_min_total"id="lexiwbs_cod_max_total"id="lexiwbs_cod_restriction_end"
FAQ

Frequently Asked Questions about Lexiata Weight Based Shipping