
Small Package Quotes – For Customers of FedEx Security & Risk Analysis
wordpress.org/plugins/small-package-quotes-fedex-editionReal-time small package (parcel) shipping rates from Fedex. Fifteen day free trial.
Is Small Package Quotes – For Customers of FedEx Safe to Use in 2026?
Generally Safe
Score 98/100Small Package Quotes – For Customers of FedEx has a strong security track record. Known vulnerabilities have been patched promptly.
The "small-package-quotes-fedex-edition" plugin v4.3.14 exhibits a mixed security posture. While it demonstrates some good practices like a lack of dangerous functions and file operations, significant concerns arise from its attack surface and the presence of unsanitized data flows. The 20 unprotected entry points (AJAX handlers and REST API routes) are a primary area of risk, offering potential avenues for attackers to interact with the plugin without proper authorization. The taint analysis revealing 5 high-severity unsanitized flows, although not classified as critical, still points to a considerable risk of data manipulation or execution vulnerabilities. Furthermore, the plugin's history includes a high-severity SQL injection vulnerability, indicating a past struggle with secure coding practices related to database interactions. Although this vulnerability is currently patched, the pattern suggests a recurring weakness that requires vigilant monitoring and robust security controls. Overall, while the plugin has strengths in its lack of dangerous code and file operations, the significant number of unprotected entry points and the historical presence of SQL injection vulnerabilities necessitate a cautious approach. The high number of unsanitized taint flows is a strong indicator of potential exploitable vulnerabilities that need immediate attention.
Key Concerns
- Unprotected AJAX handlers
- Unprotected REST API route
- High severity unsanitized taint flows
- SQL queries not using prepared statements
- Outputs not properly escaped
- Historical High severity CVE
Small Package Quotes – For Customers of FedEx Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Small Package Quotes – For Customers of FedEx <= 4.3.1 - Unauthenticated SQL Injection
Small Package Quotes – For Customers of FedEx Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Small Package Quotes – For Customers of FedEx Attack Surface
AJAX Handlers 45
REST API Routes 1
WordPress Hooks 84
Scheduled Events 1
Maintenance & Trust
Small Package Quotes – For Customers of FedEx Maintenance & Trust
Maintenance Signals
Community Trust
Small Package Quotes – For Customers of FedEx Alternatives
Small Package Quotes – Worldwide Express Edition
small-package-quotes-wwe-edition
Real-time small package (parcel) shipping rates from Worldwide Express. Fifteen day free trial.
Small Package Quotes – Unishippers Edition
small-package-quotes-unishippers-edition
Real-time small package (parcel) shipping rates from Unishippers. Fifteen day free trial.
Small Package Quotes – Purolator Edition
small-package-quotes-purolator-edition
Real-time small package (parcel) shipping rates from Purolator. Fifteen day free trial.
Small Package Quotes – USPS Edition
small-package-quotes-usps-edition
Real-time small package (parcel) shipping rates from Usps. Fifteen day free trial.
Real Time Shipping Quotes for WooCommerce
real-time-shipping-quotes-for-woocommerce
The Real Time Shipping Quotes for WooCommerce retrieves your negotiated shipping rates
Small Package Quotes – For Customers of FedEx Developer Profile
29 plugins · 1K total installs
How We Detect Small Package Quotes – For Customers of FedEx
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-style.css/wp-content/plugins/small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-script.js/wp-content/plugins/small-package-quotes-fedex-edition/shipping-rules/assets/js/shipping_rules.js/wp-content/plugins/small-package-quotes-fedex-edition/shipping-rules/assets/css/shipping_rules.css/wp-content/plugins/small-package-quotes-fedex-edition/css/fedex_small_style.css/wp-content/plugins/small-package-quotes-fedex-edition/js/wickedpicker.js/wp-content/plugins/small-package-quotes-fedex-edition/js/eniture-calculate-shipping-admin.jshttps://cdn.jsdelivr.net/npm/wickedpicker@0.4.3/dist/wickedpicker.min.csssmall-package-quotes-fedex-edition/css/fedex_small_style.css?ver=small-package-quotes-fedex-edition/js/wickedpicker.js?ver=small-package-quotes-fedex-edition/shipping-rules/assets/js/shipping_rules.js?ver=small-package-quotes-fedex-edition/shipping-rules/assets/css/shipping_rules.css?ver=small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-script.js?ver=small-package-quotes-fedex-edition/logs/en-json-tree-view/en-jtv-style.css?ver=small-package-quotes-fedex-edition/js/eniture-calculate-shipping-admin.js?ver=HTML / DOM Fingerprints
window.fedex_small_sr_script