LTL Freight Quotes – Worldwide Express Edition Security & Risk Analysis

wordpress.org/plugins/ltl-freight-quotes-worldwide-express-edition

Real-time LTL freight quotes from Worldwide Express. Fifteen day free trial.

100 active installs v5.2.2 PHP + WP 6.4+ Updated Mar 3, 2026
eniture-worldwide-expressltl-freight-quotesltl-freight-ratesshipping-rates
95
A · Safe
CVEs total4
Unpatched0
Last CVEFeb 12, 2025
Safety Verdict

Is LTL Freight Quotes – Worldwide Express Edition Safe to Use in 2026?

Generally Safe

Score 95/100

LTL Freight Quotes – Worldwide Express Edition has a strong security track record. Known vulnerabilities have been patched promptly.

4 known CVEsLast CVE: Feb 12, 2025Updated 1mo ago
Risk Assessment

The "ltl-freight-quotes-worldwide-express-edition" v5.2.2 plugin exhibits a mixed security posture. While it demonstrates some good practices, such as a significant number of capability checks and a moderate use of prepared statements for SQL queries, there are notable areas of concern. The static analysis reveals a substantial attack surface with 4 unprotected entry points, specifically 3 AJAX handlers and 1 REST API route lacking proper authorization. Furthermore, the taint analysis indicates 1 flow of high severity and 10 flows with unsanitized paths, suggesting potential vulnerabilities that could be exploited if data is not handled with sufficient care. The plugin's history of known CVEs, including high and medium severity vulnerabilities such as Cross-Site Scripting and SQL Injection, is a significant red flag. The fact that the last known vulnerability was in early 2025, and there are currently no unpatched CVEs, suggests a recent history of security issues, even if they are presently addressed. This indicates a pattern where security weaknesses have been identified and, ideally, patched in subsequent releases. However, the presence of unprotected entry points and high-severity taint flows in the current version suggests that past issues may not have been entirely eradicated or that new vulnerabilities have emerged.

Key Concerns

  • Unprotected AJAX handlers
  • Unprotected REST API routes
  • High severity taint flow
  • Flows with unsanitized paths
  • Significant SQL query exposure (49% not prepared)
  • Output escaping concerns (41% not properly escaped)
  • History of high severity CVEs
  • History of medium severity CVEs
Vulnerabilities
4

LTL Freight Quotes – Worldwide Express Edition Security Vulnerabilities

CVEs by Year

4 CVEs in 2025
2025
Patched Has unpatched

Severity Breakdown

High
2
Medium
2

4 total CVEs

CVE-2025-22286medium · 6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

LTL Freight Quotes – Worldwide Express Edition <= 5.0.21 - Reflected Cross-Site Scripting

Feb 12, 2025 Patched in 5.0.22 (7d)
CVE-2025-22291medium · 5.3Missing Authorization

LTL Freight Quotes – Worldwide Express Edition <= 5.0.20 - Missing Authorization to Unauthenticated Arbitrary Content Deletion

Feb 12, 2025 Patched in 5.0.21 (7d)
CVE-2024-13473high · 7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

LTL Freight Quotes - Worldwide Express Edition <= 5.0.20 - Unauthenticated SQL Injection

Feb 11, 2025 Patched in 5.0.21 (1d)
CVE-2025-24664high · 7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

LTL Freight Quotes – Worldwide Express Edition <= 5.0.20 - Unauthenticated SQL Injection

Jan 18, 2025 Patched in 5.0.21 (46d)
Code Analysis
Analyzed Mar 16, 2026

LTL Freight Quotes – Worldwide Express Edition Code Analysis

Dangerous Functions
0
Raw SQL Queries
40
42 prepared
Unescaped Output
112
162 escaped
Nonce Checks
15
Capability Checks
32
File Operations
0
External Requests
14
Bundled Libraries
0

SQL Query Safety

51% prepared82 total queries

Output Escaping

59% escaped274 total outputs
Data Flows
10 unsanitized

Data Flow Analysis

15 flows10 with unsanitized paths
wwe_ltl_warehouse_template (warehouse-dropship\wwe-ltl-wild-delivery.php:42)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
4 unprotected

LTL Freight Quotes – Worldwide Express Edition Attack Surface

Entry Points36
Unprotected4

AJAX Handlers 35

authwp_ajax_en_wwe_ltl_fdo_connection_status_refreshfdo\en-coupon-api.php:9
noprivwp_ajax_en_wwe_ltl_fdo_connection_status_refreshfdo\en-coupon-api.php:10
authwp_ajax_en_wwe_ltl_va_connection_status_refreshfdo\en-coupon-api.php:12
noprivwp_ajax_en_wwe_ltl_va_connection_status_refreshfdo\en-coupon-api.php:13
noprivwp_ajax_wwe_fdfdo\en-coupon-api.php:15
authwp_ajax_wwe_fdfdo\en-coupon-api.php:16
authwp_ajax_eniture_calculate_shipping_rates_adminorder\rates\order-rates.php:13
noprivwp_ajax_ltl_validate_keysquoteSpeedFreightShipment.php:12
authwp_ajax_ltl_validate_keysquoteSpeedFreightShipment.php:13
noprivwp_ajax_en_wwe_ltl_save_shipping_ruleshipping-rules\shipping-rules-save.php:24
authwp_ajax_en_wwe_ltl_save_shipping_ruleshipping-rules\shipping-rules-save.php:25
noprivwp_ajax_en_wwe_ltl_edit_shipping_ruleshipping-rules\shipping-rules-save.php:27
authwp_ajax_en_wwe_ltl_edit_shipping_ruleshipping-rules\shipping-rules-save.php:28
noprivwp_ajax_en_wwe_ltl_delete_shipping_ruleshipping-rules\shipping-rules-save.php:30
authwp_ajax_en_wwe_ltl_delete_shipping_ruleshipping-rules\shipping-rules-save.php:31
noprivwp_ajax_en_wwe_ltl_update_shipping_rule_statusshipping-rules\shipping-rules-save.php:33
authwp_ajax_en_wwe_ltl_update_shipping_rule_statusshipping-rules\shipping-rules-save.php:34
authwp_ajax_en_wwe_ltl_activate_hit_to_update_planupdate-plan.php:11
noprivwp_ajax_en_wwe_ltl_activate_hit_to_update_planupdate-plan.php:12
noprivwp_ajax_en_wd_get_addresswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:24
authwp_ajax_en_wd_get_addresswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:25
noprivwp_ajax_en_wwe_ltl_delete_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:27
authwp_ajax_en_wwe_ltl_delete_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:28
noprivwp_ajax_wwe_ltl_en_wd_save_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:30
authwp_ajax_wwe_ltl_en_wd_save_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:31
noprivwp_ajax_wwe_ltl_en_wd_save_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:33
authwp_ajax_wwe_ltl_en_wd_save_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:34
noprivwp_ajax_wwe_ltl_en_wd_edit_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:37
authwp_ajax_wwe_ltl_en_wd_edit_dropshipwarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:38
noprivwp_ajax_en_wwe_ltl_wd_delete_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:40
authwp_ajax_en_wwe_ltl_wd_delete_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:41
noprivwp_ajax_wwe_ltl_en_wd_edit_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:43
authwp_ajax_wwe_ltl_en_wd_edit_warehousewarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:44
noprivwp_ajax_wwe_ltl_en_wd_bulk_delete_locationswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:46
authwp_ajax_wwe_ltl_en_wd_bulk_delete_locationswarehouse-dropship\wild\includes\wwe-ltl-wild-delivery-save.php:47

REST API Routes 1

POST/wp-json/fdo-company-id/update-statusfdo\en-coupon-api.php:96
WordPress Hooks 78
filteren_accessorial_excludedcarrier_service.php:465
actionrest_api_initfdo\en-coupon-api.php:17
filteren_fdo_image_urls_mergegroup_ltl_shipments.php:497
filterforce_show_methodsltl_shipping_class.php:292
filterwoocommerce_package_ratesltl_shipping_class.php:984
filterwoocommerce_package_ratesltl_shipping_class.php:1008
filterwoocommerce_package_ratesltl_shipping_class.php:1206
filterwoocommerce_settings_tabs_arrayltl_tab_class_woocommrece.php:24
actionwoocommerce_thankyouorder\en-order-export.php:14
actioninitorder\en-order-export.php:15
actionen_async_orders_exporting_processorder\en-order-export.php:16
filtercron_schedulesorder\en-order-export.php:17
actionwoocommerce_order_actionsorder\en-order-widget.php:17
filteren_order_accessoriesorder\rates\order-rates.php:14
filteren_app_common_plan_statusproduct\en-common-product-detail.php:26
filteren_compatible_optimized_product_optionsproduct\en-common-product-detail.php:29
actionwoocommerce_product_options_shippingproduct\en-common-product-detail.php:33
actionwoocommerce_process_product_metaproduct\en-common-product-detail.php:34
actionwoocommerce_product_after_variable_attributesproduct\en-common-product-detail.php:37
actionwoocommerce_save_product_variationproduct\en-common-product-detail.php:38
filteren_insurance_filterproduct\en-common-product-detail.php:41
filteren_app_common_plan_statusproduct\en-product-detail.php:27
filteren_compatible_optimized_product_optionsproduct\en-product-detail.php:30
actionwoocommerce_product_options_shippingproduct\en-product-detail.php:36
actionwoocommerce_process_product_metaproduct\en-product-detail.php:37
actionwoocommerce_product_after_variable_attributesproduct\en-product-detail.php:40
actionwoocommerce_save_product_variationproduct\en-product-detail.php:41
filterEn_Plugins_dropship_filterproduct\en-product-detail.php:44
filterEn_Plugins_variable_freight_classification_filterproduct\en-product-detail.php:45
filteren_wd_update_query_stringstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:17
filteren_wwe_ltl_wd_origin_array_setstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:18
filteren_wwe_ltl_wd_standard_plansstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:19
filtersuppress_local_deliverystandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:20
filterwoocommerce_product_export_product_column_en_nicknametemplate\csv-export.php:9
filterwoocommerce_product_export_product_column_en_citytemplate\csv-export.php:10
filterwoocommerce_product_export_product_column_en_statetemplate\csv-export.php:11
filterwoocommerce_product_export_product_column_en_ziptemplate\csv-export.php:12
filterwoocommerce_product_export_product_column_en_countrytemplate\csv-export.php:13
filterwoocommerce_product_export_product_column_en_product_freight_classtemplate\csv-export.php:16
filterwoocommerce_product_export_product_column_en_product_freight_class_variationtemplate\csv-export.php:17
filterwoocommerce_product_export_column_namestemplate\csv-export.php:20
filterwoocommerce_product_export_product_default_columnstemplate\csv-export.php:21
actionwoocommerce_product_options_shippingtemplate\products-nested-options.php:31
actionwoocommerce_process_product_metatemplate\products-nested-options.php:34
actionwoocommerce_product_after_variable_attributestemplate\products-nested-options.php:44
actionwoocommerce_save_product_variationtemplate\products-nested-options.php:48
actionadmin_noticesupdate-plan.php:268
actionadmin_enqueue_scriptswarehouse-dropship\wwe-ltl-wild-delivery.php:34
actionbefore_woocommerce_initwoocommercefrieght.php:46
filteren_pluginswoocommercefrieght.php:62
actionadmin_enqueue_scriptswoocommercefrieght.php:64
actionadmin_initwoocommercefrieght.php:102
filteren_woo_plans_notification_actionwoocommercefrieght.php:130
filteren_woo_plans_notification_message_actionwoocommercefrieght.php:142
filteren_woo_plans_nested_notification_message_actionwoocommercefrieght.php:154
filterplugin_action_linkswoocommercefrieght.php:203
actionadmin_noticeswoocommercefrieght.php:280
filterwoocommerce_get_settings_pageswoocommercefrieght.php:282
actionadmin_initwoocommercefrieght.php:285
actionwoocommerce_shipping_initwoocommercefrieght.php:286
filterwoocommerce_shipping_methodswoocommercefrieght.php:287
filterwoocommerce_package_rateswoocommercefrieght.php:288
actioninitwoocommercefrieght.php:289
filterwoocommerce_cart_shipping_method_full_labelwoocommercefrieght.php:290
actioninitwoocommercefrieght.php:291
actioninitwoocommercefrieght.php:292
actionupgrader_process_completewoocommercefrieght.php:341
actionadmin_enqueue_scriptswoocommercefrieght.php:348
actionwp_enqueue_scriptswoocommercefrieght.php:381
filterwwe_quests_quotes_plans_suscription_and_featureswoocommercefrieght.php:408
filterwwe_quests_plans_notification_linkwoocommercefrieght.php:441
filteren_warehouse_dropshipwoocommercefrieght.php:514
actionadmin_initwoocommercefrieght.php:515
actionadmin_initwoocommercefrieght.php:516
actionadmin_initwoocommercefrieght.php:539
filteren_suppress_parcel_rates_hookwoocommercefrieght.php:790
actionadmin_noticeswwe_admin_filter.php:46
filterwoocommerce_product_importer_parsed_datawwe_admin_filter.php:284

Scheduled Events 1

en_async_orders_exporting_process
Maintenance & Trust

LTL Freight Quotes – Worldwide Express Edition Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 3, 2026
PHP min version
Downloads17K

Community Trust

Rating100/100
Number of ratings2
Active installs100
Developer Profile

LTL Freight Quotes – Worldwide Express Edition Developer Profile

enituretechnology

29 plugins · 1K total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
11 days
View full developer profile
Detection Fingerprints

How We Detect LTL Freight Quotes – Worldwide Express Edition

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/css/ltl-style.css/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-style.css/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/js/shipping_rules.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/css/shipping_rules.css/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/js/eniture-calculate-shipping-admin.js
Script Paths
/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/js/shipping_rules.js/wp-content/plugins/ltl-freight-quotes-worldwide-express-edition/js/eniture-calculate-shipping-admin.js
Version Parameters
ltl-freight-quotes-worldwide-express-edition/css/ltl-style.css?ver=ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-style.css?ver=ltl-freight-quotes-worldwide-express-edition/logs/en-json-tree-view/en-jtv-script.js?ver=ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/js/shipping_rules.js?ver=ltl-freight-quotes-worldwide-express-edition/shipping-rules/assets/css/shipping_rules.css?ver=ltl-freight-quotes-worldwide-express-edition/js/eniture-calculate-shipping-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
ltl-style
Data Attributes
en_tree_view_urlpluginsUrl
JS Globals
en_wwe_ltl_sr_scripteniture_calculate_shipping_admin
FAQ

Frequently Asked Questions about LTL Freight Quotes – Worldwide Express Edition