
Standard Box Sizes – for WooCommerce Security & Risk Analysis
wordpress.org/plugins/standard-box-sizesFor exclusive use with Eniture Technology's Small Package Quotes plugins for FedEx, Purolator, UPS, USPS, Unishippers, and Worldwide Express.
Is Standard Box Sizes – for WooCommerce Safe to Use in 2026?
Generally Safe
Score 99/100Standard Box Sizes – for WooCommerce has a strong security track record. Known vulnerabilities have been patched promptly.
The 'standard-box-sizes' plugin v1.6.22 exhibits a mixed security posture. While it shows good practices such as a lack of dangerous functions, file operations, and external HTTP requests, significant concerns arise from its attack surface and output handling. The presence of 24 AJAX handlers, with one explicitly lacking authentication checks, presents a direct vulnerability. This, combined with only 48% of output being properly escaped, suggests a risk of cross-site scripting (XSS) vulnerabilities, especially when combined with the unsanitized path found in the taint analysis. The plugin's history includes one medium-severity CVE, indicating past weaknesses in authorization, which aligns with the identified unprotected AJAX handler. While there are no currently unpatched vulnerabilities, the pattern suggests a need for greater diligence in securing entry points and ensuring robust output sanitization. Overall, the plugin has some strengths but requires immediate attention to address the unprotected AJAX handler and improve output escaping to mitigate potential security risks.
Key Concerns
- AJAX handler without auth check
- Low percentage of properly escaped output
- Taint flow with unsanitized path
- Medium severity CVE in history
Standard Box Sizes – for WooCommerce Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Standard Box Sizes – for WooCommerce <= 1.6.13 - Missing Authorization
Standard Box Sizes – for WooCommerce Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Standard Box Sizes – for WooCommerce Attack Surface
AJAX Handlers 24
WordPress Hooks 29
Maintenance & Trust
Standard Box Sizes – for WooCommerce Maintenance & Trust
Maintenance Signals
Community Trust
Standard Box Sizes – for WooCommerce Alternatives
Letterbox Thumbnails
letterbox-thumnails
This plugin add new editor for generating thumbnails with letterbox style. Background color for letterbox style sets in settings.
Meta Box
meta-box
Meta Box plugin is a powerful, professional developer toolkit to create custom meta boxes and custom fields for your custom post types in WordPress.
Ocean Extra
ocean-extra
Ocean Extra adds extra features and flexibility to the OceanWP theme for a turbocharged experience.
CMB2
cmb2
CMB2 is a metabox, custom fields, and forms library for WordPress that will blow your mind.
Firelight Lightbox
easy-fancybox
Formerly Easy Fancybox. The most popular WordPress lightbox plugin. Simple, fast, and responsive. Opens images, videos, PDFs, and custom popups.
Standard Box Sizes – for WooCommerce Developer Profile
29 plugins · 1K total installs
How We Detect Standard Box Sizes – for WooCommerce
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/standard-box-sizes/admin/assets/css/bootstrap-iso.css/wp-content/plugins/standard-box-sizes/admin/assets/css/box-sizing-style.css/wp-content/plugins/standard-box-sizes/admin/assets/js/box-sizing-script.js/wp-content/plugins/standard-box-sizes/admin/assets/js/box-sizing-script.jsstandard-box-sizes/admin/assets/css/bootstrap-iso.css?ver=standard-box-sizes/admin/assets/css/box-sizing-style.css?ver=standard-box-sizes/admin/assets/js/box-sizing-script.js?ver=HTML / DOM Fingerprints
notice-dismiss-binnotice-errornotice-success<!-- if there is any message --><!-- Error case --><!-- update these notifications after checking flags --><!-- Success case -->+5 moreid="message"id="bin-del"id="message" class="notice-dismiss-bin notice-error notice is-dismissible "id="message" class="notice-dismiss-bin notice-success notice is-dismissible "window.sbs/wp-json/eniture-tech/v1/request-key/wp-json/eniture-tech/v1/box-size