
SafeRoute WooCommerce Security & Risk Analysis
wordpress.org/plugins/saferoute-woocommerceПлагин для быстрой интеграции виджета доставки SafeRoute в магазины на основе WooCommerce.
Is SafeRoute WooCommerce Safe to Use in 2026?
Generally Safe
Score 92/100SafeRoute WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'saferoute-woocommerce' plugin v3.5.1 exhibits a concerning security posture primarily due to its unprotected entry points. All four identified AJAX handlers lack authentication checks, meaning any unauthenticated user could potentially trigger these functions, leading to a broad attack surface. While the taint analysis did not reveal any critical or high-severity vulnerabilities, and there's no recorded vulnerability history, this does not negate the immediate risks posed by the lack of authorization on AJAX actions. The plugin also shows a significant weakness in output escaping, with only 21% of outputs being properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is rendered without proper sanitization. The presence of SQL queries without prepared statements is another concern, although only one was detected. The good news is that there are no known CVEs, no bundled outdated libraries, and no file operations or cron events, which are positive signs. However, the lack of capability checks and nonces on AJAX handlers, combined with poor output escaping, indicates a need for significant security improvements.
Key Concerns
- All AJAX handlers are unprotected
- Low percentage of properly escaped output
- SQL queries not using prepared statements
- Only one nonce check across all entry points
- No capability checks on entry points
SafeRoute WooCommerce Security Vulnerabilities
SafeRoute WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
SafeRoute WooCommerce Attack Surface
AJAX Handlers 4
WordPress Hooks 26
Maintenance & Trust
SafeRoute WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
SafeRoute WooCommerce Alternatives
DDelivery WooCommerce
ddelivery-woocommerce
Модуль для быстрой интеграции виджета DDelivery в магазин на основе WooCommerce. https://ddelivery.ru/
Claudio Sanches – Correios for WooCommerce
woocommerce-correios
Integration between the Correios and WooCommerce
Shiprocket
shiprocket
Auto Sync your Woocommerce store orders & ship them at lowest shipping rates. Automate your shipping, save time & money.
MyParcel
woocommerce-myparcel
Export your WooCommerce orders to MyParcel (www.myparcel.nl) and print labels directly from the WooCommerce admin
YITH WooCommerce Order & Shipment Tracking
yith-woocommerce-order-tracking
Add an easy tool to manage order shipping information of your shop and to notified your customers about the shipping.
SafeRoute WooCommerce Developer Profile
2 plugins · 70 total installs
How We Detect SafeRoute WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/saferoute-woocommerce/assets/checkout.css/wp-content/plugins/saferoute-woocommerce/assets/checkout.js/wp-content/plugins/saferoute-woocommerce/assets/helpers.js/wp-content/plugins/saferoute-woocommerce/assets/checkout.js/wp-content/plugins/saferoute-woocommerce/assets/helpers.jssaferoute-widget-api?ver=saferoute-helpers?ver=saferoute-checkout?ver=HTML / DOM Fingerprints
data-sr-widget-api-pathSR_WIDGETSR_HIDE_CHECKOUT_BILLING_BLOCK/wp-json/saferoute/v1/widget/get