Small Package Quotes – For Customers of FedEx Security & Risk Analysis

wordpress.org/plugins/small-package-quotes-fedex-edition

Real-time small package (parcel) shipping rates from Fedex. Fifteen day free trial.

10 active installs v4.3.14 PHP + WP 6.4+ Updated Mar 11, 2026
eniture-fedexparcel-quotesparcel-ratesshipping-estimates
98
A · Safe
CVEs total1
Unpatched0
Last CVEFeb 18, 2025
Safety Verdict

Is Small Package Quotes – For Customers of FedEx Safe to Use in 2026?

Generally Safe

Score 98/100

Small Package Quotes – For Customers of FedEx has a strong security track record. Known vulnerabilities have been patched promptly.

1 known CVELast CVE: Feb 18, 2025Updated 24d ago
Risk Assessment

The "small-package-quotes-fedex-edition" plugin v4.3.14 exhibits a mixed security posture. While it demonstrates some good practices like a lack of dangerous functions and file operations, significant concerns arise from its attack surface and the presence of unsanitized data flows. The 20 unprotected entry points (AJAX handlers and REST API routes) are a primary area of risk, offering potential avenues for attackers to interact with the plugin without proper authorization. The taint analysis revealing 5 high-severity unsanitized flows, although not classified as critical, still points to a considerable risk of data manipulation or execution vulnerabilities. Furthermore, the plugin's history includes a high-severity SQL injection vulnerability, indicating a past struggle with secure coding practices related to database interactions. Although this vulnerability is currently patched, the pattern suggests a recurring weakness that requires vigilant monitoring and robust security controls. Overall, while the plugin has strengths in its lack of dangerous code and file operations, the significant number of unprotected entry points and the historical presence of SQL injection vulnerabilities necessitate a cautious approach. The high number of unsanitized taint flows is a strong indicator of potential exploitable vulnerabilities that need immediate attention.

Key Concerns

  • Unprotected AJAX handlers
  • Unprotected REST API route
  • High severity unsanitized taint flows
  • SQL queries not using prepared statements
  • Outputs not properly escaped
  • Historical High severity CVE
Vulnerabilities
1

Small Package Quotes – For Customers of FedEx Security Vulnerabilities

CVEs by Year

1 CVE in 2025
2025
Patched Has unpatched

Severity Breakdown

High
1

1 total CVE

CVE-2024-13491high · 7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Small Package Quotes – For Customers of FedEx <= 4.3.1 - Unauthenticated SQL Injection

Feb 18, 2025 Patched in 4.3.2 (1d)
Code Analysis
Analyzed Mar 16, 2026

Small Package Quotes – For Customers of FedEx Code Analysis

Dangerous Functions
0
Raw SQL Queries
38
26 prepared
Unescaped Output
143
233 escaped
Nonce Checks
11
Capability Checks
26
File Operations
0
External Requests
4
Bundled Libraries
0

SQL Query Safety

41% prepared64 total queries

Output Escaping

62% escaped376 total outputs
Data Flows
14 unsanitized

Data Flow Analysis

21 flows14 with unsanitized paths
warehouse_template (warehouse-dropship\wild-delivery.php:38)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
20 unprotected

Small Package Quotes – For Customers of FedEx Attack Surface

Entry Points46
Unprotected20

AJAX Handlers 45

noprivwp_ajax_fedex_small_test_connectionfedex_small_test_connection.php:16
authwp_ajax_fedex_small_test_connectionfedex_small_test_connection.php:17
authwp_ajax_eniture_calculate_shipping_rates_adminorder-details\rates\order-rates.php:13
noprivwp_ajax_en_fedex_small_save_shipping_ruleshipping-rules\shipping-rules-save.php:23
authwp_ajax_en_fedex_small_save_shipping_ruleshipping-rules\shipping-rules-save.php:24
noprivwp_ajax_en_fedex_small_edit_shipping_ruleshipping-rules\shipping-rules-save.php:26
authwp_ajax_en_fedex_small_edit_shipping_ruleshipping-rules\shipping-rules-save.php:27
noprivwp_ajax_en_fedex_small_delete_shipping_ruleshipping-rules\shipping-rules-save.php:29
authwp_ajax_en_fedex_small_delete_shipping_ruleshipping-rules\shipping-rules-save.php:30
noprivwp_ajax_en_fedex_small_update_shipping_rule_statusshipping-rules\shipping-rules-save.php:32
authwp_ajax_en_fedex_small_update_shipping_rule_statusshipping-rules\shipping-rules-save.php:33
noprivwp_ajax_fedex_s_fdsmall-package-quotes-fedex-edition.php:542
authwp_ajax_fedex_s_fdsmall-package-quotes-fedex-edition.php:543
authwp_ajax_en_fedex_small_activate_hit_to_update_planupdate-plan.php:11
noprivwp_ajax_en_fedex_small_activate_hit_to_update_planupdate-plan.php:12
authwp_ajax_sm_get_addresswarehouse-dropship\save_warehouse.php:13
noprivwp_ajax_sm_get_addresswarehouse-dropship\save_warehouse.php:14
authwp_ajax_sm_save_warehousewarehouse-dropship\save_warehouse.php:114
noprivwp_ajax_sm_save_warehousewarehouse-dropship\save_warehouse.php:115
authwp_ajax_sm_edit_warehousewarehouse-dropship\save_warehouse.php:164
noprivwp_ajax_sm_edit_warehousewarehouse-dropship\save_warehouse.php:165
authwp_ajax_sm_delete_warehousewarehouse-dropship\save_warehouse.php:182
noprivwp_ajax_sm_delete_warehousewarehouse-dropship\save_warehouse.php:183
authwp_ajax_sm_save_dropshipwarehouse-dropship\save_warehouse.php:198
noprivwp_ajax_sm_save_dropshipwarehouse-dropship\save_warehouse.php:199
authwp_ajax_sm_edit_dropshipwarehouse-dropship\save_warehouse.php:248
noprivwp_ajax_sm_edit_dropshipwarehouse-dropship\save_warehouse.php:249
authwp_ajax_sm_delete_dropshipwarehouse-dropship\save_warehouse.php:266
noprivwp_ajax_sm_delete_dropshipwarehouse-dropship\save_warehouse.php:267
noprivwp_ajax_en_wd_get_addresswarehouse-dropship\wild\includes\wild-delivery-save.php:24
authwp_ajax_en_wd_get_addresswarehouse-dropship\wild\includes\wild-delivery-save.php:25
noprivwp_ajax_en_fedex_small_wd_save_warehousewarehouse-dropship\wild\includes\wild-delivery-save.php:28
authwp_ajax_en_fedex_small_wd_save_warehousewarehouse-dropship\wild\includes\wild-delivery-save.php:29
noprivwp_ajax_en_fedex_small_wd_edit_warehousewarehouse-dropship\wild\includes\wild-delivery-save.php:31
authwp_ajax_en_fedex_small_wd_edit_warehousewarehouse-dropship\wild\includes\wild-delivery-save.php:32
noprivwp_ajax_en_fedex_small_wd_delete_warehousewarehouse-dropship\wild\includes\wild-delivery-save.php:34
authwp_ajax_en_fedex_small_wd_delete_warehousewarehouse-dropship\wild\includes\wild-delivery-save.php:35
noprivwp_ajax_en_fedex_small_wd_save_dropshipwarehouse-dropship\wild\includes\wild-delivery-save.php:38
authwp_ajax_en_fedex_small_wd_save_dropshipwarehouse-dropship\wild\includes\wild-delivery-save.php:39
noprivwp_ajax_en_fedex_small_wd_edit_dropshipwarehouse-dropship\wild\includes\wild-delivery-save.php:41
authwp_ajax_en_fedex_small_wd_edit_dropshipwarehouse-dropship\wild\includes\wild-delivery-save.php:42
noprivwp_ajax_en_fedex_small_wd_delete_dropshipwarehouse-dropship\wild\includes\wild-delivery-save.php:44
authwp_ajax_en_fedex_small_wd_delete_dropshipwarehouse-dropship\wild\includes\wild-delivery-save.php:45
noprivwp_ajax_en_fedex_small_wd_bulk_delete_locationswarehouse-dropship\wild\includes\wild-delivery-save.php:47
authwp_ajax_en_fedex_small_wd_bulk_delete_locationswarehouse-dropship\wild\includes\wild-delivery-save.php:48

REST API Routes 1

POST/wp-json/fdo-company-id/update-statussmall-package-quotes-fedex-edition.php:590
WordPress Hooks 84
filteren_fdo_packagefdo\en-sbs.php:8
filterfedex_small_domestic_servicesfedex-samll-carriers.php:19
filterfedex_small_one_rate_servicesfedex-samll-carriers.php:20
filterfedex_small_international_servicesfedex-samll-carriers.php:21
filterwoocommerce_product_importer_parsed_datafedex_small_admin_filter.php:206
filteren_fdo_image_urls_mergefedex_small_group_package.php:395
actionwoocommerce_checkout_update_order_reviewfedex_small_shipping_class.php:75
filterwoocommerce_package_ratesfedex_small_shipping_class.php:410
filterwoocommerce_package_ratesfedex_small_shipping_class.php:613
filterwoocommerce_package_ratesfedex_small_shipping_class.php:636
filterwoocommerce_settings_tabs_arrayfedex_small_tab_class.php:23
actionadmin_footerjs\fedex_small_js.php:19
actionwoocommerce_order_actionsorder-details\en-fedex-small-order-widget-details.php:111
actionwoocommerce_thankyouorder-details\en-order-export.php:14
actioninitorder-details\en-order-export.php:15
actionen_async_orders_exporting_processorder-details\en-order-export.php:16
filtercron_schedulesorder-details\en-order-export.php:17
actionwoocommerce_order_actionsorder-details\en-order-widget.php:17
filteren_order_accessoriesorder-details\rates\order-rates.php:14
filteren_app_common_plan_statusproduct\en-common-product-detail.php:26
actionwoocommerce_product_options_shippingproduct\en-common-product-detail.php:30
actionwoocommerce_process_product_metaproduct\en-common-product-detail.php:31
actionwoocommerce_product_after_variable_attributesproduct\en-common-product-detail.php:34
actionwoocommerce_save_product_variationproduct\en-common-product-detail.php:35
filteren_insurance_filterproduct\en-common-product-detail.php:38
filteren_app_common_plan_statusproduct\en-product-detail.php:26
actionwoocommerce_product_options_shippingproduct\en-product-detail.php:32
actionwoocommerce_process_product_metaproduct\en-product-detail.php:33
actionwoocommerce_product_after_variable_attributesproduct\en-product-detail.php:36
actionwoocommerce_save_product_variationproduct\en-product-detail.php:37
filterEn_Plugins_dropship_filterproduct\en-product-detail.php:40
filterEn_Plugins_variable_freight_classification_filterproduct\en-product-detail.php:41
actionwoocommerce_product_options_shippingproduct\en-product-detail.php:382
actionwoocommerce_process_product_metaproduct\en-product-detail.php:383
actionwoocommerce_product_after_variable_attributesproduct\en-product-detail.php:386
actionwoocommerce_save_product_variationproduct\en-product-detail.php:387
filteren_small_package_quotes_fieldsproduct\en-product-detail.php:390
actionbefore_woocommerce_initsmall-package-quotes-fedex-edition.php:28
filteren_pluginssmall-package-quotes-fedex-edition.php:41
filteren_woo_plans_notification_actionsmall-package-quotes-fedex-edition.php:67
actionadmin_initsmall-package-quotes-fedex-edition.php:94
filteren_woo_plans_notification_message_actionsmall-package-quotes-fedex-edition.php:106
actionadmin_noticessmall-package-quotes-fedex-edition.php:122
actionadmin_initsmall-package-quotes-fedex-edition.php:138
actionadmin_noticessmall-package-quotes-fedex-edition.php:148
actionadmin_enqueue_scriptssmall-package-quotes-fedex-edition.php:188
filterplugin_action_linkssmall-package-quotes-fedex-edition.php:213
filteren_woo_plans_nested_notification_message_actionsmall-package-quotes-fedex-edition.php:280
actionadmin_enqueue_scriptssmall-package-quotes-fedex-edition.php:283
actionupgrader_process_completesmall-package-quotes-fedex-edition.php:389
filterwoocommerce_shipping_methodssmall-package-quotes-fedex-edition.php:394
filterwoocommerce_get_settings_pagessmall-package-quotes-fedex-edition.php:395
actionwoocommerce_shipping_initsmall-package-quotes-fedex-edition.php:396
filterwoocommerce_package_ratessmall-package-quotes-fedex-edition.php:397
filterwoocommerce_shipping_calculator_enable_citysmall-package-quotes-fedex-edition.php:398
filterwoocommerce_cart_no_shipping_available_htmlsmall-package-quotes-fedex-edition.php:399
actioninitsmall-package-quotes-fedex-edition.php:400
actioninitsmall-package-quotes-fedex-edition.php:401
actionwoocommerce_proceed_to_checkoutsmall-package-quotes-fedex-edition.php:428
actionwp_enqueue_scriptssmall-package-quotes-fedex-edition.php:436
filterfedex_small_quotes_plans_suscription_and_featuressmall-package-quotes-fedex-edition.php:453
filterfedex_small_plans_notification_linksmall-package-quotes-fedex-edition.php:482
actionrest_api_initsmall-package-quotes-fedex-edition.php:587
filteren_check_ground_transit_restrict_statussmall-package-quotes-fedex-edition.php:667
filteren_fedex_small_wd_update_query_stringstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:17
filteren_fedex_small_wd_origin_array_setstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:18
filteren_fedex_small_wd_standard_plansstandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:19
filtersuppress_local_deliverystandard-package-addon\instore-pickup-local-delivery\instore-local-delivery.php:20
filterwoocommerce_product_export_product_column_en_nicknametemplate\csv-export.php:9
filterwoocommerce_product_export_product_column_en_citytemplate\csv-export.php:10
filterwoocommerce_product_export_product_column_en_statetemplate\csv-export.php:11
filterwoocommerce_product_export_product_column_en_ziptemplate\csv-export.php:12
filterwoocommerce_product_export_product_column_en_countrytemplate\csv-export.php:13
filterwoocommerce_product_export_product_column_en_product_freight_classtemplate\csv-export.php:16
filterwoocommerce_product_export_product_column_en_product_freight_class_variationtemplate\csv-export.php:17
filterwoocommerce_product_export_column_namestemplate\csv-export.php:20
filterwoocommerce_product_export_product_default_columnstemplate\csv-export.php:21
actionwoocommerce_product_options_shippingtemplate\products-nested-options.php:33
actionwoocommerce_process_product_metatemplate\products-nested-options.php:36
actionwoocommerce_product_after_variable_attributestemplate\products-nested-options.php:47
actionwoocommerce_save_product_variationtemplate\products-nested-options.php:51
actionadmin_noticesupdate-plan.php:278
filteren_wd_get_addresswarehouse-dropship\get-distance-request.php:21
actionadmin_enqueue_scriptswarehouse-dropship\wild-delivery.php:30

Scheduled Events 1

en_async_orders_exporting_process
Maintenance & Trust

Small Package Quotes – For Customers of FedEx Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 11, 2026
PHP min version
Downloads8K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Small Package Quotes – For Customers of FedEx Developer Profile

enituretechnology

29 plugins · 1K total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
11 days
View full developer profile
Detection Fingerprints

How We Detect Small Package Quotes – For Customers of FedEx

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-style.css/wp-content/plugins/small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/small-package-quotes-fedex-edition/shipping-rules/assets/js/shipping_rules.js/wp-content/plugins/small-package-quotes-fedex-edition/shipping-rules/assets/css/shipping_rules.css/wp-content/plugins/small-package-quotes-fedex-edition/css/fedex_small_style.css/wp-content/plugins/small-package-quotes-fedex-edition/js/wickedpicker.js/wp-content/plugins/small-package-quotes-fedex-edition/js/eniture-calculate-shipping-admin.js
Script Paths
https://cdn.jsdelivr.net/npm/wickedpicker@0.4.3/dist/wickedpicker.min.css
Version Parameters
small-package-quotes-fedex-edition/css/fedex_small_style.css?ver=small-package-quotes-fedex-edition/js/wickedpicker.js?ver=small-package-quotes-fedex-edition/shipping-rules/assets/js/shipping_rules.js?ver=small-package-quotes-fedex-edition/shipping-rules/assets/css/shipping_rules.css?ver=small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-script.js?ver=small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-style.css?ver=small-package-quotes-fedex-edition/js/eniture-calculate-shipping-admin.js?ver=

HTML / DOM Fingerprints

JS Globals
window.fedex_small_sr_script
FAQ

Frequently Asked Questions about Small Package Quotes – For Customers of FedEx