
LTL Freight Quotes – TForce Edition Security & Risk Analysis
wordpress.org/plugins/ltl-freight-quotes-ups-editionReal-time LTL freight quotes from UPS. Fifteen day free trial.
Is LTL Freight Quotes – TForce Edition Safe to Use in 2026?
Generally Safe
Score 98/100LTL Freight Quotes – TForce Edition has a strong security track record. Known vulnerabilities have been patched promptly.
The "ltl-freight-quotes-ups-edition" plugin v3.6.9 exhibits a mixed security posture. While it demonstrates good practices like a relatively low number of dangerous functions and a moderate percentage of SQL queries using prepared statements, significant concerns arise from its attack surface and output escaping practices. The presence of a REST API route without permission callbacks is a direct, unprotected entry point, posing an immediate risk. Furthermore, over half of the output operations are not properly escaped, increasing the likelihood of Cross-Site Scripting (XSS) vulnerabilities. The taint analysis reveals one high-severity flow, which, combined with the general output escaping issues, suggests potential for data manipulation or unauthorized access. The plugin's vulnerability history, with a past high-severity SQL injection vulnerability, indicates a pattern of security weaknesses that require ongoing vigilance and prompt patching. Although there are no currently unpatched CVEs, the historical context and current code signals warrant a cautious approach to its deployment.
Key Concerns
- REST API route without permission callbacks
- High severity taint flow
- Output escaping: 53% properly escaped
- SQL queries: 45% using prepared statements
- History of high severity SQL Injection
LTL Freight Quotes – TForce Edition Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
LTL Freight Quotes – TForce Edition <= 3.6.4 - Unauthenticated SQL Injection
LTL Freight Quotes – TForce Edition Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
LTL Freight Quotes – TForce Edition Attack Surface
AJAX Handlers 22
REST API Routes 1
WordPress Hooks 68
Scheduled Events 1
Maintenance & Trust
LTL Freight Quotes – TForce Edition Maintenance & Trust
Maintenance Signals
Community Trust
LTL Freight Quotes – TForce Edition Alternatives
LTL Freight Quotes – FreightQuote Edition
ltl-freight-quotes-freightquote-edition
Real-time LTL freight quotes from FreightQuote. Fifteen day free trial.
LTL Freight Quotes – XPO Edition
ltl-freight-quotes-xpo-edition
Real-time LTL freight quotes from XPO Logistics. Fifteen day free trial.
LTL Freight Quotes – Unishippers Edition
ltl-freight-quotes-unishippers-edition
Real-time Unishippers freight quotes from Unishippers. Fifteen day free trial.
LTL Freight Quotes – Estes Edition
ltl-freight-quotes-estes-edition
Real-time LTL freight quotes from Estes. Fifteen day free trial.
LTL Freight Quotes – GlobalTranz Edition
ltl-freight-quotes-globaltranz-edition
Real-time LTL freight quotes from GlobalTranz. Fifteen day free trial.
LTL Freight Quotes – TForce Edition Developer Profile
29 plugins · 1K total installs
How We Detect LTL Freight Quotes – TForce Edition
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ltl-freight-quotes-ups-edition/css/wickedpicker.min.css/wp-content/plugins/ltl-freight-quotes-ups-edition/js/wickedpicker.js/wp-content/plugins/ltl-freight-quotes-ups-edition/css/ups-freight-style.css/wp-content/plugins/ltl-freight-quotes-ups-edition/logs/en-json-tree-view/en-jtv-style.css/wp-content/plugins/ltl-freight-quotes-ups-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/ltl-freight-quotes-ups-edition/js/wickedpicker.js/wp-content/plugins/ltl-freight-quotes-ups-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/ltl-freight-quotes-ups-edition/css/wickedpicker.min.css?ver=1.0.0/wp-content/plugins/ltl-freight-quotes-ups-edition/js/wickedpicker.js?ver=1.0.0/wp-content/plugins/ltl-freight-quotes-ups-edition/css/ups-freight-style.css?ver=1.1.5/wp-content/plugins/ltl-freight-quotes-ups-edition/logs/en-json-tree-view/en-jtv-script.js?ver=1.0.0HTML / DOM Fingerprints
ups_freight_wc_avaibility_errnotice-error<!-- UPS Freight Admin Scripts --><!-- Load scripts for Tforce Freight json tree view -->data-plugin-nameups_freight_wc_version_numberen_tforce_jtv_script