
Order Delivery Date And Time Security & Risk Analysis
wordpress.org/plugins/order-delivery-date-and-timeOrder Delivery Date And Time plugin lets customers select delivery/pickup dates and times at checkout page.
Is Order Delivery Date And Time Safe to Use in 2026?
Generally Safe
Score 100/100Order Delivery Date And Time has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "order-delivery-date-and-time" plugin v1.1.1 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, exclusively using prepared statements, and shows a high percentage of properly escaped output, minimizing risks associated with data manipulation and cross-site scripting. The absence of known vulnerabilities in its history is also a strong indicator of past security diligence. However, the static analysis reveals significant concerns regarding its attack surface. Two AJAX handlers are present, and crucially, both lack authentication checks. This means any unauthenticated user could potentially interact with these endpoints, leading to unintended consequences or further exploitation if these handlers are vulnerable. While the taint analysis did not report critical or high-severity unsanitized paths, the flows identified with unsanitized paths warrant attention, especially when coupled with unprotected entry points.
While the plugin has a clean vulnerability history, the identified unprotected AJAX handlers represent a substantial immediate risk. The taint analysis, despite not flagging critical issues, does indicate "unsanitized paths" which, when combined with unprotected AJAX endpoints, could become a vector for exploitation. The plugin's strengths lie in its database interaction and output handling, but the clear lack of authorization on its AJAX endpoints is a significant weakness that needs to be addressed to improve its overall security. The overall risk is moderate, leaning towards concerning due to the easily exploitable entry points.
Key Concerns
- AJAX handlers without authentication checks
- Flows with unsanitized paths
Order Delivery Date And Time Security Vulnerabilities
Order Delivery Date And Time Code Analysis
Output Escaping
Data Flow Analysis
Order Delivery Date And Time Attack Surface
AJAX Handlers 2
WordPress Hooks 17
Maintenance & Trust
Order Delivery Date And Time Maintenance & Trust
Maintenance Signals
Community Trust
Order Delivery Date And Time Alternatives
Delivery & Pickup Date Time for WooCommerce
woo-delivery
Gives the facility of selecting delivery/pickup/both date/time/both at order checkout page.
WooODT Lite – Delivery & pickup date time location for WooCommerce
byconsole-woo-order-delivery-time
WooODT Lite is a WooCommerce Delivery & Pickup Date Time extension that gives the facility of selecting delivery/pickup date and time/time slot o …
AICOSO Pickup and Delivery Date Time for WooCommerce
aicoso-pickup-and-delivery-for-woocommerce
A comprehensive WooCommerce extension that enables customers to choose between home delivery and pickup options with flexible scheduling capabilities.
Chwazi – Delivery & Pickup Scheduling for WooCommerce
delivery-and-pickup-scheduling-for-woocommerce
Empower customers to select their preferred delivery or pickup time using a convenient datetime picker integrated into the WooCommerce checkout page.
PiWeb Delivery & Pickup Date Time for WooCommerce
pi-woocommerce-order-date-time-and-type
WooCommerce delivery date | delivery time | pickup date | pickup time | pickup location
Order Delivery Date And Time Developer Profile
16 plugins · 579K total installs
How We Detect Order Delivery Date And Time
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/order-delivery-date-and-time/includes/assets/flat-pickr.min.css/wp-content/plugins/order-delivery-date-and-time/assets/css/thwdtp-admin.min.css/wp-content/plugins/order-delivery-date-and-time/includes/assets/flat-pickr.min.js/wp-content/plugins/order-delivery-date-and-time/assets/js/thwdtp-admin.min.jsorder-delivery-date-and-time/includes/assets/flat-pickr.min.cssorder-delivery-date-and-time/assets/css/thwdtp-admin.min.cssorder-delivery-date-and-time/includes/assets/flat-pickr.min.jsorder-delivery-date-and-time/assets/js/thwdtp-admin.min.jsorder-delivery-date-and-time/assets/css/thwdtp-admin.min.css?ver=order-delivery-date-and-time/assets/js/thwdtp-admin.min.js?ver=HTML / DOM Fingerprints
thwdtp-admin-styledata-thwdtp_order_typewdtp_var