LTL Freight Quotes – Worldwide Express Edition Security & Risk Analysis

wordpress.org/plugins/ltl-freight-quotes-worldwide-express-edition

Real-time LTL freight quotes from Worldwide Express. Fifteen day free trial.

90 active installs v5.2.5 PHP + WP 6.4+ Updated Mar 31, 2026
eniture-worldwide-expressltl-freight-quotesltl-freight-ratesshipping-rates
90
A · Safe
CVEs total5
Unpatched0
Last CVEApr 7, 2026
Safety Verdict

Is LTL Freight Quotes – Worldwide Express Edition Safe to Use in 2026?

Generally Safe

Score 90/100

LTL Freight Quotes – Worldwide Express Edition has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.

5 known CVEsLast CVE: Apr 7, 2026Updated 1mo ago
Risk Assessment

The "ltl-freight-quotes-worldwide-express-edition" v5.2.2 plugin exhibits a mixed security posture. While it demonstrates some good practices, such as a significant number of capability checks and a moderate use of prepared statements for SQL queries, there are notable areas of concern. The static analysis reveals a substantial attack surface with 4 unprotected entry points, specifically 3 AJAX handlers and 1 REST API route lacking proper authorization. Furthermore, the taint analysis indicates 1 flow of high severity and 10 flows with unsanitized paths, suggesting potential vulnerabilities that could be exploited if data is not handled with sufficient care. The plugin's history of known CVEs, including high and medium severity vulnerabilities such as Cross-Site Scripting and SQL Injection, is a significant red flag. The fact that the last known vulnerability was in early 2025, and there are currently no unpatched CVEs, suggests a recent history of security issues, even if they are presently addressed. This indicates a pattern where security weaknesses have been identified and, ideally, patched in subsequent releases. However, the presence of unprotected entry points and high-severity taint flows in the current version suggests that past issues may not have been entirely eradicated or that new vulnerabilities have emerged.

Key Concerns

  • Unprotected AJAX handlers
  • Unprotected REST API routes
  • High severity taint flow
  • Flows with unsanitized paths
  • Significant SQL query exposure (49% not prepared)
  • Output escaping concerns (41% not properly escaped)
  • History of high severity CVEs
  • History of medium severity CVEs
Vulnerabilities
5 published

LTL Freight Quotes – Worldwide Express Edition Security Vulnerabilities

CVEs by Year

4 CVEs in 2025
2025
1 CVE in 2026
2026
Patched Has unpatched

Severity Breakdown

High
2
Medium
3

5 total CVEs

CVE-2026-34899medium · 5.3Missing Authorization

LTL Freight Quotes – Worldwide Express Edition <= 5.2.1 - Missing Authorization

Apr 7, 2026 Patched in 5.2.2 (9d)
CVE-2025-22286medium · 6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

LTL Freight Quotes – Worldwide Express Edition <= 5.0.21 - Reflected Cross-Site Scripting

Feb 12, 2025 Patched in 5.0.22 (7d)
CVE-2025-22291medium · 5.3Missing Authorization

LTL Freight Quotes – Worldwide Express Edition <= 5.0.20 - Missing Authorization to Unauthenticated Arbitrary Content Deletion

Feb 12, 2025 Patched in 5.0.21 (7d)
CVE-2024-13473high · 7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

LTL Freight Quotes - Worldwide Express Edition <= 5.0.20 - Unauthenticated SQL Injection

Feb 11, 2025 Patched in 5.0.21 (1d)
CVE-2025-24664high · 7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

LTL Freight Quotes – Worldwide Express Edition <= 5.0.20 - Unauthenticated SQL Injection

Jan 18, 2025 Patched in 5.0.21 (46d)
Version History

LTL Freight Quotes – Worldwide Express Edition Release Timeline

v5.2.5Current
v5.2.4
v5.2.3
v5.2.2
v5.2.11 CVE
v5.2.01 CVE
v5.1.91 CVE
v5.1.81 CVE
v5.1.71 CVE
v5.1.61 CVE
v5.1.51 CVE
v5.1.41 CVE
v5.1.31 CVE
Code Analysis
Analyzed Mar 16, 2026

LTL Freight Quotes – Worldwide Express Edition Code Analysis

Dangerous Functions
0
Raw SQL Queries
40
42 prepared
Unescaped Output
112
162 escaped
Nonce Checks
15
Capability Checks
32
File Operations
0
External Requests
14
Bundled Libraries
0

SQL Query Safety

51% prepared82 total queries

Output Escaping

59% escaped274 total outputs
Data Flows · Security
10 unsanitized

Data Flow Analysis

15 flows10 with unsanitized paths
wwe_ltl_warehouse_template (warehouse-dropship\wwe-ltl-wild-delivery.php:42)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
4 unprotected

LTL Freight Quotes – Worldwide Express Edition Attack Surface

Entry Points36
Unprotected4

AJAX Handlers 35

authwp_ajax_en_wwe_ltl_fdo_connection_status_refreshfdo\en-coupon-api.php:9
noprivwp_ajax_en_wwe_ltl_fdo_connection_status_refreshfdo\en-coupon-api.php:10
authwp_ajax_en_wwe_ltl_va_connection_status_refreshfdo\en-coupon-api.php:12
noprivwp_ajax_en_wwe_ltl_va_connection_status_refreshfdo\en-coupon-api.php:13
noprivwp_ajax_wwe_fdfdo\en-coupon-api.php:15
authwp_ajax_wwe_fdfdo\en-coupon-api.php:16
authwp_ajax_eniture_calculate_shipping_rates_adminorder\rates\order-rates.php:13
noprivwp_ajax_ltl_validate_keysquoteSpeedFreightShipment.php:12
authwp_ajax_ltl_validate_keysquoteSpeedFreightShipment.php:13
noprivwp_ajax_en_wwe_ltl_save_shipping_ruleshipping-rules\shipping-rules-save.php:24
authwp_ajax_en_wwe_ltl_save_shipping_ruleshipping-rules\shipping-rules-save.php:25
noprivwp_ajax_en_wwe_ltl_edit_shipping_ruleshipping-rules\shipping-rules-save.php:27
authwp_ajax_en_wwe_ltl_edit_shipping_ruleshipping-rules\shipping-rules-save.php:28
noprivwp_ajax_en_wwe_ltl_delete_shipping_ruleshipping-rules\shipping-rules-save.php:30
authwp_ajax_en_wwe_ltl_delete_shipping_ruleshipping-rules\shipping-rules-save.php:31
noprivwp_ajax_en_wwe_ltl_update_shipping_rule_statusshipping-rules\shipping-rules-save.php:33
authwp_ajax_en_wwe_ltl_update_shipping_rule_statusshipping-rules\shipping-rules-save.php:34
authwp_ajax_en_wwe_ltl_activate_hit_to_update_planupdate-plan.php:11
noprivwp_ajax_en_wwe_ltl_activate_hit_to_update_planupdate-plan.php:12
noprivwp_ajax_en_wd_get_addresswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:24
authwp_ajax_en_wd_get_addresswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:25
noprivwp_ajax_en_wwe_ltl_delete_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:27
authwp_ajax_en_wwe_ltl_delete_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:28
noprivwp_ajax_wwe_ltl_en_wd_save_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:30
authwp_ajax_wwe_ltl_en_wd_save_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:31
noprivwp_ajax_wwe_ltl_en_wd_save_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:33
authwp_ajax_wwe_ltl_en_wd_save_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:34
noprivwp_ajax_wwe_ltl_en_wd_edit_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:37
authwp_ajax_wwe_ltl_en_wd_edit_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:38
noprivwp_ajax_en_wwe_ltl_wd_delete_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:40
authwp_ajax_en_wwe_ltl_wd_delete_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:41
noprivwp_ajax_wwe_ltl_en_wd_edit_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:43
authwp_ajax_wwe_ltl_en_wd_edit_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:44
noprivwp_ajax_wwe_ltl_en_wd_bulk_delete_locationswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:46
authwp_ajax_wwe_ltl_en_wd_bulk_delete_locationswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:47

REST API Routes 1

POST/wp-json/fdo-company-id/update-statusfdo\en-coupon-api.php:96
WordPress Hooks 78
filteren_accessorial_excludedcarrier_service.php:465
actionrest_api_initfdo\en-coupon-api.php:17
filteren_fdo_image_urls_mergegroup_ltl_shipments.php:497
filterforce_show_methodsltl_shipping_class.php:292
filterwoocommerce_package_ratesltl_shipping_class.php:984
filterwoocommerce_package_ratesltl_shipping_class.php:1008
filterwoocommerce_package_ratesltl_shipping_class.php:1206
filterwoocommerce_settings_tabs_arrayltl_tab_class_woocommrece.php:24
actionwoocommerce_thankyouorder\en-order-export.php:14
actioninitorder\en-order-export.php:15
actionen_async_orders_exporting_processorder\en-order-export.php:16
filtercron_schedulesorder\en-order-export.php:17
actionwoocommerce_order_actionsorder\en-order-widget.php:17
filteren_order_accessoriesorder\rates\order-rates.php:14
filteren_app_common_plan_statusproduct\en-common-product-detail.php:26
filteren_compatible_optimized_product_optionsproduct\en-common-product-detail.php:29
actionwoocommerce_product_options_shippingproduct\en-common-product-detail.php:33
actionwoocommerce_process_product_metaproduct\en-common-product-detail.php:34
actionwoocommerce_product_after_variable_attributesproduct\en-common-product-detail.php:37
actionwoocommerce_save_product_variationproduct\en-common-product-detail.php:38
filteren_insurance_filterproduct\en-common-product-detail.php:41
filteren_app_common_plan_statusproduct\en-product-detail.php:27
filteren_compatible_optimized_product_optionsproduct\en-product-detail.php:30
actionwoocommerce_product_options_shippingproduct\en-product-detail.php:36
actionwoocommerce_process_product_metaproduct\en-product-detail.php:37
actionwoocommerce_product_after_variable_attributesproduct\en-product-detail.php:40
actionwoocommerce_save_product_variationproduct\en-product-detail.php:41
filterEn_Plugins_dropship_filterproduct\en-product-detail.php:44
filterEn_Plugins_variable_freight_classification_filterproduct\en-product-detail.php:45
filteren_wd_update_query_stringstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:17
filteren_wwe_ltl_wd_origin_array_setstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:18
filteren_wwe_ltl_wd_standard_plansstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:19
filtersuppress_local_deliverystandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:20
filterwoocommerce_product_export_product_column_en_nicknametemplate\csv-export.php:9
filterwoocommerce_product_export_product_column_en_citytemplate\csv-export.php:10
filterwoocommerce_product_export_product_column_en_statetemplate\csv-export.php:11
filterwoocommerce_product_export_product_column_en_ziptemplate\csv-export.php:12
filterwoocommerce_product_export_product_column_en_countrytemplate\csv-export.php:13
filterwoocommerce_product_export_product_column_en_product_freight_classtemplate\csv-export.php:16
filterwoocommerce_product_export_product_column_en_product_freight_class_variationtemplate\csv-export.php:17
filterwoocommerce_product_export_column_namestemplate\csv-export.php:20
filterwoocommerce_product_export_product_default_columnstemplate\csv-export.php:21
actionwoocommerce_product_options_shippingtemplate\products-nested-options.php:31
actionwoocommerce_process_product_metatemplate\products-nested-options.php:34
actionwoocommerce_product_after_variable_attributestemplate\products-nested-options.php:44
actionwoocommerce_save_product_variationtemplate\products-nested-options.php:48
actionadmin_noticesupdate-plan.php:268
actionadmin_enqueue_scriptswarehouse-dropship\wwe-ltl-wild-delivery.php:34
actionbefore_woocommerce_initwoocommercefrieght.php:46
filteren_pluginswoocommercefrieght.php:62
actionadmin_enqueue_scriptswoocommercefrieght.php:64
actionadmin_initwoocommercefrieght.php:102
filteren_woo_plans_notification_actionwoocommercefrieght.php:130
filteren_woo_plans_notification_message_actionwoocommercefrieght.php:142
filteren_woo_plans_nested_notification_message_actionwoocommercefrieght.php:154
filterplugin_action_linkswoocommercefrieght.php:203
actionadmin_noticeswoocommercefrieght.php:280
filterwoocommerce_get_settings_pageswoocommercefrieght.php:282
actionadmin_initwoocommercefrieght.php:285
actionwoocommerce_shipping_initwoocommercefrieght.php:286
filterwoocommerce_shipping_methodswoocommercefrieght.php:287
filterwoocommerce_package_rateswoocommercefrieght.php:288
actioninitwoocommercefrieght.php:289
filterwoocommerce_cart_shipping_method_full_labelwoocommercefrieght.php:290
actioninitwoocommercefrieght.php:291
actioninitwoocommercefrieght.php:292
actionupgrader_process_completewoocommercefrieght.php:341
actionadmin_enqueue_scriptswoocommercefrieght.php:348
actionwp_enqueue_scriptswoocommercefrieght.php:381
filterwwe_quests_quotes_plans_suscription_and_featureswoocommercefrieght.php:408
filterwwe_quests_plans_notification_linkwoocommercefrieght.php:441
filteren_warehouse_dropshipwoocommercefrieght.php:514
actionadmin_initwoocommercefrieght.php:515
actionadmin_initwoocommercefrieght.php:516
actionadmin_initwoocommercefrieght.php:539
filteren_suppress_parcel_rates_hookwoocommercefrieght.php:790
actionadmin_noticeswwe_admin_filter.php:46
filterwoocommerce_product_importer_parsed_datawwe_admin_filter.php:284

Scheduled Events 1

en_async_orders_exporting_process
Maintenance & Trust

LTL Freight Quotes – Worldwide Express Edition Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 31, 2026
PHP min version
Downloads18K

Community Trust

Rating100/100
Number of ratings2
Active installs90
Developer Profile

LTL Freight Quotes – Worldwide Express Edition Developer Profile

enituretechnology

32 plugins · 1K total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
19 days
View full developer profile
Detection Fingerprints

How We Detect LTL Freight Quotes – Worldwide Express Edition

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/css/ltl-style.css/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-style.css/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/js/shipping_rules.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/css/shipping_rules.css/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/js/eniture-calculate-shipping-admin.js
Script Paths
/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/js/shipping_rules.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/js/eniture-calculate-shipping-admin.js
Version Parameters
ltl-freight-quotes-worldwide-express-edition/css/ltl-style.css?ver=ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-style.css?ver=ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-script.js?ver=ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/js/shipping_rules.js?ver=ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/css/shipping_rules.css?ver=ltl-freight-quotes-worldwide-express-edition/js/eniture-calculate-shipping-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
ltl-style
Data Attributes
en_tree_view_urlpluginsUrl
JS Globals
en_wwe_ltl_sr_scripteniture_calculate_shipping_admin
FAQ

Frequently Asked Questions about LTL Freight Quotes – Worldwide Express Edition