
Terminal Africa Security & Risk Analysis
wordpress.org/plugins/terminal-africaTerminal Africa Shipping Method Plugin for WooCommerce
Is Terminal Africa Safe to Use in 2026?
Mostly Safe
Score 78/100Terminal Africa is generally safe to use. 1 past CVE were resolved. Keep it updated.
The 'terminal-africa' plugin version 1.13.23 exhibits a mixed security posture. On the positive side, the plugin demonstrates strong adherence to secure coding practices, with 100% of its SQL queries using prepared statements and 95% of output properly escaped. The absence of dangerous functions, file operations, and taint analysis indicating no unsanitized paths or critical/high severity flows are also encouraging signs. However, significant concerns arise from the attack surface. The plugin exposes 88 entry points, with a notable 5 of these lacking proper authentication checks. This, combined with only 2 capability checks, presents a substantial risk of unauthorized access and potential manipulation of plugin functionality.
The plugin's vulnerability history, while currently showing only one medium-severity CVE, is concerning due to it being unpatched. This indicates a potential for exploitation of known weaknesses. The common vulnerability type being Cross-site Scripting (XSS) in the past further highlights the need for rigorous input validation and output encoding. The existence of an unpatched medium CVE, coupled with a significant number of unprotected entry points, outweighs the otherwise good coding practices. While the code itself appears to have solid foundations regarding SQL and output handling, the exposed, unprotected entry points and the unpatched vulnerability are critical areas that require immediate attention.
Key Concerns
- Unprotected AJAX handlers
- REST API route without permission callback
- Unpatched medium severity CVE
Terminal Africa Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Terminal Africa <= 1.13.17 - Reflected Cross-Site Scripting
Terminal Africa Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Terminal Africa Attack Surface
AJAX Handlers 79
REST API Routes 9
WordPress Hooks 58
Maintenance & Trust
Terminal Africa Maintenance & Trust
Maintenance Signals
Community Trust
Terminal Africa Alternatives
User role based shipping methods
user-role-based-shipping-method
Display WooCommerce shipping methods based on User Role and Country. Globally compatible.
Conditional Shipping for WooCommerce: Restrict Shipping Options by Anything
wpfactory-conditional-shipping-for-woocommerce
Set conditions for WooCommerce shipping methods to show up.
COD24 Shipping For Woocommerce
cod24-shipping
Add Cod24 shipping methods To Woocommerce
Яндекс Доставка
yandex-go-delivery
Яндекс Доставка — это сервис, который помогает бизнесам отправлять заказы клиентам внутри города и между городами.
Selloship
selloship
Auto Sync your woocommerce store orders & ship them at lowest shipping rates. Automate your shipping, save time & money.
Terminal Africa Developer Profile
1 plugin · 80 total installs
How We Detect Terminal Africa
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/terminal-africa/assets/css/terminal-africa.css/wp-content/plugins/terminal-africa/assets/js/terminal-africa.js/wp-content/plugins/terminal-africa/assets/css/terminal-africa.frontend.css/wp-content/plugins/terminal-africa/assets/js/terminal-africa.frontend.js/wp-content/plugins/terminal-africa/assets/js/terminal-africa.js/wp-content/plugins/terminal-africa/assets/js/terminal-africa.frontend.jsterminal-africa/assets/css/terminal-africa.css?ver=terminal-africa/assets/js/terminal-africa.js?ver=terminal-africa/assets/css/terminal-africa.frontend.css?ver=terminal-africa/assets/js/terminal-africa.frontend.js?ver=HTML / DOM Fingerprints
terminal-africa-checkout-fieldterminal-africa-form-rowterminal-africa-shipping-method-wrapperterminal-africa-select-country-label<!-- Terminal Africa --><!-- Terminal Africa Shipping Method -->data-terminal-africa-api-keydata-terminal-africa-shipping-optionswindow.terminalAfricaAjaxUrlwindow.terminalAfricaSettingsvar terminalAfricaAjaxUrlvar terminalAfricaSettings/wp-json/terminal-africa/v1/shipping_methods/wp-json/terminal-africa/v1/calculate_rates[terminal_africa_shipping_calculator][terminal_africa_tracking_widget]