Multiple Cart Fee – Additional Fees for WooCommerce Security & Risk Analysis

wordpress.org/plugins/multiple-cart-fee-for-woocommerce

🛒 Add smart, flexible multiple fees to your WooCommerce cart based on products, categories, or tags — perfect for handling additional charges with eas …

0 active installs v1.1.3 PHP 7.4+ WP 5.6+ Updated Unknown
cart-feeconditional-feesextra-chargesmultiple-feeswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Multiple Cart Fee – Additional Fees for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Multiple Cart Fee – Additional Fees for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

Based on the provided static analysis and vulnerability history, the "multiple-cart-fee-for-woocommerce" plugin version 1.1.3 exhibits a strong security posture. The absence of any detected dangerous functions, raw SQL queries, file operations, or external HTTP requests is commendable. Furthermore, all output appears to be properly escaped, and the presence of nonce checks indicates an effort to prevent certain types of attacks. The plugin also has a clean vulnerability history, with no known CVEs recorded, suggesting a generally well-maintained codebase.

However, a key concern arises from the complete lack of capability checks and permission callbacks for its entry points, although the current attack surface is zero. This suggests that if any new entry points were to be introduced in future versions, they might lack necessary authorization checks, creating a potential risk. The use of a bundled Freemius library, version 1.0, also warrants attention; while not explicitly flagged as a vulnerability here, outdated bundled libraries can sometimes introduce security risks if not kept up-to-date.

In conclusion, this plugin currently appears to be very secure. The developers have followed good practices regarding output escaping and nonce usage. The lack of vulnerability history is a positive indicator. The primary area for improvement and future vigilance would be ensuring that any new features or entry points are properly secured with capability checks and that bundled libraries are regularly reviewed for updates.

Key Concerns

  • Bundled Freemius v1.0 library may be outdated
  • No capability checks for entry points
Vulnerabilities
None known

Multiple Cart Fee – Additional Fees for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Multiple Cart Fee – Additional Fees for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
33 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

Output Escaping

100% escaped33 total outputs
Attack Surface

Multiple Cart Fee – Additional Fees for WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadmin_enqueue_scriptsincludes\admin\class-multiple-cart-fee-admin.php:9
filterwoocommerce_settings_tabs_arrayincludes\admin\class-multiple-cart-fee-admin.php:10
actionwoocommerce_settings_tabs_multiple_cart_feeincludes\admin\class-multiple-cart-fee-admin.php:11
actionwoocommerce_update_options_multiple_cart_feeincludes\admin\class-multiple-cart-fee-admin.php:12
actionwoocommerce_admin_field_fee_repeaterincludes\admin\class-multiple-cart-fee-admin.php:13
actionwoocommerce_cart_calculate_feesincludes\public\class-multple-cart-fee-public.php:9
actionbefore_woocommerce_initmultiple-cart-fee-for-woocommerce.php:71
filterplugin_row_metamultiple-cart-fee-for-woocommerce.php:82
actionadmin_noticesmultiple-cart-fee-for-woocommerce.php:84
Maintenance & Trust

Multiple Cart Fee – Additional Fees for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedUnknown
PHP min version7.4
Downloads746

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

Multiple Cart Fee – Additional Fees for WooCommerce Developer Profile

VerseSofts

7 plugins · 130 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Multiple Cart Fee – Additional Fees for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/multiple-cart-fee-for-woocommerce/assets/css/admin.css/wp-content/plugins/multiple-cart-fee-for-woocommerce/assets/js/admin.js
Script Paths
/wp-content/plugins/multiple-cart-fee-for-woocommerce/freemius/start.php
Version Parameters
multiple-cart-fee-for-woocommerce/assets/css/admin.css?ver=multiple-cart-fee-for-woocommerce/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
multiple-fees-containerfee-headerfee-titlefee-contentfee-configfee-detailsfee-input-wrapfee-input+1 more
HTML Comments
<!-- Freemius Integration Start --><!-- Freemius Integration end --><!-- Fee Configuration -->
Data Attributes
data-fee-id
JS Globals
mcfw_admin
FAQ

Frequently Asked Questions about Multiple Cart Fee – Additional Fees for WooCommerce