
Portugal DPD Pickup and Lockers network for WooCommerce Security & Risk Analysis
wordpress.org/plugins/portugal-chronopost-pickup-woocommerceLets you deliver on the DPD Portugal Pickup network of partners or Lockers.
Is Portugal DPD Pickup and Lockers network for WooCommerce Safe to Use in 2026?
Generally Safe
Score 100/100Portugal DPD Pickup and Lockers network for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "portugal-chronopost-pickup-woocommerce" version 3.7 exhibits a mixed security posture. On the positive side, the code demonstrates good practices regarding SQL query preparation and output escaping, with a very low percentage of unsanitized outputs. The lack of known CVEs and common vulnerability types in its history is also a strong indicator of a relatively secure past. However, significant concerns arise from the static analysis.
The plugin has a concerningly high proportion of unprotected entry points, specifically two AJAX handlers that lack any form of authentication or capability checks. This creates a substantial attack surface that could be exploited by unauthenticated users. While the taint analysis did not reveal critical or high-severity issues in the single flow analyzed, the presence of a flow with unsanitized paths warrants attention, especially in conjunction with the unprotected AJAX handlers.
Overall, while the plugin has a clean vulnerability history and good practices in many areas, the exposed AJAX endpoints present a clear and immediate risk. The absence of nonce and capability checks on these critical entry points significantly weakens its security posture, making it a target for various attacks. Addressing these unprotected handlers should be the highest priority to improve its security.
Key Concerns
- 2 AJAX handlers without auth checks
- 0 Nonce checks on entry points
- 0 Capability checks on entry points
- 1 Taint flow with unsanitized paths
Portugal DPD Pickup and Lockers network for WooCommerce Security Vulnerabilities
Portugal DPD Pickup and Lockers network for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Portugal DPD Pickup and Lockers network for WooCommerce Attack Surface
AJAX Handlers 2
WordPress Hooks 30
Scheduled Events 1
Maintenance & Trust
Portugal DPD Pickup and Lockers network for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Portugal DPD Pickup and Lockers network for WooCommerce Alternatives
Hide Shipping Method For WooCommerce
hide-shipping-method-for-woocommerce
Allows store owners to hide shipping methods based on specific conditions!
Order Delivery Date for WooCommerce
order-delivery-date-for-woocommerce
Let customers choose delivery dates & times on checkout. Simplify delivery management by blocking holidays & setting max deliveries per day.
Boxtal – Shipping solution
boxtal-connect
Negotiated rates for all types of shipping (home, relay, express, lockers, etc.). No subscription, no hidden fees.
Cash On Pickup for WooCommerce
wc-cash-on-pickup
Have your customers pay with cash on pickup
Csomagpontok és Címkék WooCommerce-hez
hungarian-pickup-points-for-woocommerce
Csomagpont választó és címkenyomtató WooCommerce-hez, házhozszállításhoz is. MPL, Foxpost, GLS, DPD, Express One, Postapont, Packeta és még sok más
Portugal DPD Pickup and Lockers network for WooCommerce Developer Profile
21 plugins · 27K total installs
How We Detect Portugal DPD Pickup and Lockers network for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/portugal-chronopost-pickup-woocommerce/assets/style.css/wp-content/plugins/portugal-chronopost-pickup-woocommerce/assets/style-flatsome.css/wp-content/plugins/portugal-chronopost-pickup-woocommerce/assets/functions.js/wp-content/plugins/portugal-chronopost-pickup-woocommerce/assets/functions.jsportugal-chronopost-pickup-woocommerce/assets/style.css?ver=portugal-chronopost-pickup-woocommerce/assets/style-flatsome.css?ver=portugal-chronopost-pickup-woocommerce/assets/functions.js?ver=HTML / DOM Fingerprints
cppw