Shipping Servientrega Woocommerce Security & Risk Analysis

wordpress.org/plugins/shipping-servientrega-woocommerce

Servientrega empresa transportadora de Colombia

50 active installs v7.0.7 PHP 8.2+ WP 6.0+ Updated Feb 9, 2026
commercee-commercestorewordpress-ecommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Shipping Servientrega Woocommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Shipping Servientrega Woocommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The 'shipping-servientrega-woocommerce' plugin version 7.0.7 demonstrates a generally good security posture, with no recorded vulnerabilities or critical issues found during static and taint analysis. The plugin effectively utilizes prepared statements for SQL queries, has a high percentage of properly escaped output, and implements a reasonable number of nonce and capability checks for its entry points. The presence of the Guzzle library, while a bundled dependency, doesn't immediately raise a red flag without further information on its specific version and potential known vulnerabilities. However, there is one identified flow with an unsanitized path, which is a potential area for concern that warrants further investigation to understand its impact and whether it is exposed to external input. The plugin also performs file operations and makes external HTTP requests, which are common functionalities that introduce their own set of risks if not handled securely. Overall, the plugin appears to be developed with security in mind, but the single unsanitized path flow is a weakness that could be exploited.

Key Concerns

  • Flow with unsanitized path
  • SQL queries: 50% not using prepared statements
  • File operations performed
  • External HTTP requests made
Vulnerabilities
None known

Shipping Servientrega Woocommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Shipping Servientrega Woocommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
1 prepared
Unescaped Output
5
25 escaped
Nonce Checks
5
Capability Checks
1
File Operations
2
External Requests
2
Bundled Libraries
1

Bundled Libraries

Guzzle

SQL Query Safety

50% prepared2 total queries

Output Escaping

83% escaped30 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

3 flows1 with unsanitized paths
<tabs> (includes\admin\tabs.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Shipping Servientrega Woocommerce Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_servientrega_generate_stickerincludes\class-shipping-servientrega-wc-plugin.php:106
noprivwp_ajax_servientrega_generate_stickerincludes\class-shipping-servientrega-wc-plugin.php:107
WordPress Hooks 27
actionadmin_noticesincludes\class-shipping-servientrega-wc-plugin.php:81
filtercron_schedulesincludes\class-shipping-servientrega-wc-plugin.php:95
filterwoocommerce_shipping_methodsincludes\class-shipping-servientrega-wc-plugin.php:97
filterwoocommerce_checkout_fieldsincludes\class-shipping-servientrega-wc-plugin.php:98
filtermanage_woocommerce_page_wc-orders_columnsincludes\class-shipping-servientrega-wc-plugin.php:99
filterbulk_actions-edit-shop_orderincludes\class-shipping-servientrega-wc-plugin.php:100
filterhandle_bulk_actions-edit-shop_orderincludes\class-shipping-servientrega-wc-plugin.php:101
actionwoocommerce_order_status_changedincludes\class-shipping-servientrega-wc-plugin.php:102
actionwoocommerce_process_product_metaincludes\class-shipping-servientrega-wc-plugin.php:103
actionwoocommerce_save_product_variationincludes\class-shipping-servientrega-wc-plugin.php:104
actionadmin_enqueue_scriptsincludes\class-shipping-servientrega-wc-plugin.php:105
actionmanage_woocommerce_page_wc-orders_custom_columnincludes\class-shipping-servientrega-wc-plugin.php:108
actionwoocommerce_order_details_after_order_tableincludes\class-shipping-servientrega-wc-plugin.php:109
actionshipping_servientrega_wc_ss_scheduleincludes\class-shipping-servientrega-wc-plugin.php:110
actionshipping_servientrega_wc_ss_schedule_delete_old_pdfsincludes\class-shipping-servientrega-wc-plugin.php:111
actionplugins_loadedshipping-servientrega-wc.php:26
actionbefore_woocommerce_initshipping-servientrega-wc.php:27
actionadmin_noticesshipping-servientrega-wc.php:64
actionadmin_noticesshipping-servientrega-wc.php:77
actionadmin_noticesshipping-servientrega-wc.php:89
actionadmin_noticesshipping-servientrega-wc.php:101
actionadmin_noticesshipping-servientrega-wc.php:118
actionadmin_noticesshipping-servientrega-wc.php:149
actionadmin_noticesshipping-servientrega-wc.php:164
actionadmin_noticesshipping-servientrega-wc.php:185
actionwoocommerce_product_after_variable_attributesshipping-servientrega-wc.php:224
actionwoocommerce_product_options_shippingshipping-servientrega-wc.php:225

Scheduled Events 3

shipping_servientrega_wc_ss_schedule
shipping_servientrega_wc_ss_schedule_delete_old_pdfs
shipping_servientrega_wc_ss_schedule
Maintenance & Trust

Shipping Servientrega Woocommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 9, 2026
PHP min version8.2
Downloads23K

Community Trust

Rating60/100
Number of ratings2
Active installs50
Developer Profile

Shipping Servientrega Woocommerce Developer Profile

Saul Morales Pacheco

11 plugins · 8K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Shipping Servientrega Woocommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/shipping-servientrega-woocommerce/assets/js/script.js/wp-content/plugins/shipping-servientrega-woocommerce/assets/css/style.css/wp-content/plugins/shipping-servientrega-woocommerce/assets/css/customizer.css/wp-content/plugins/shipping-servientrega-woocommerce/assets/js/admin-script.js/wp-content/plugins/shipping-servientrega-woocommerce/assets/js/admin-checkout.js/wp-content/plugins/shipping-servientrega-woocommerce/assets/css/admin-checkout.css
Version Parameters
shipping-servientrega-woocommerce/assets/js/script.js?ver=shipping-servientrega-woocommerce/assets/css/style.css?ver=shipping-servientrega-woocommerce/assets/css/customizer.css?ver=shipping-servientrega-woocommerce/assets/js/admin-script.js?ver=shipping-servientrega-woocommerce/assets/js/admin-checkout.js?ver=shipping-servientrega-woocommerce/assets/css/admin-checkout.css?ver=

HTML / DOM Fingerprints

CSS Classes
servientrega-shipping-method
HTML Comments
<!-- Shipping Servientrega Woocommerce --><!-- Main Servientrega Shipping Class --><!-- Initialize the Servientrega Checkout JS -->
JS Globals
servientrega_checkout_params
FAQ

Frequently Asked Questions about Shipping Servientrega Woocommerce