
TRS Address Book Security & Risk Analysis
wordpress.org/plugins/trs-address-bookAllow customers to save multiple shipping addresses that can be used on WooCommerce checkout page. The address book contains the customer's shipp …
Is TRS Address Book Safe to Use in 2026?
Generally Safe
Score 100/100TRS Address Book has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'trs-address-book' v1.0.2 plugin exhibits a concerning security posture primarily due to a large, unprotected attack surface. While the plugin demonstrates good practices in SQL query handling and output escaping, the lack of authentication checks on all 10 AJAX handlers is a significant vulnerability. This allows unauthenticated users to trigger potentially sensitive operations within the plugin. The taint analysis further highlights this risk, revealing 4 flows with unsanitized paths, all classified as high severity. These unsanitized paths, combined with unprotected AJAX endpoints, create a clear opportunity for attackers to inject malicious data or trigger unintended actions.
The plugin's vulnerability history is clean, with no known CVEs or past reported issues. This suggests a potentially well-maintained codebase or limited exposure. However, the absence of past vulnerabilities should not be mistaken for current security. The static analysis reveals critical weaknesses that, if exploited, could lead to serious security breaches despite the lack of historical incidents.
In conclusion, 'trs-address-book' v1.0.2 has strengths in its SQL preparation and output sanitization. Nevertheless, the unprotected AJAX endpoints and high-severity taint flows represent substantial risks that require immediate attention. The lack of historical vulnerabilities is a positive sign, but it doesn't mitigate the documented security flaws.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
- No capability checks on AJAX handlers
- No nonce checks on AJAX handlers
TRS Address Book Security Vulnerabilities
TRS Address Book Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
TRS Address Book Attack Surface
AJAX Handlers 10
WordPress Hooks 19
Maintenance & Trust
TRS Address Book Maintenance & Trust
Maintenance Signals
Community Trust
TRS Address Book Alternatives
Address Book for WooCommerce
woo-address-book
Gives your customers the option to store multiple billing and shipping addresses and retrieve them on checkout.
Happy Coders Multi Address for WooCommerce
happycoders-multiple-addresses
Allow logged-in WooCommerce customers to manage multiple addresses in an address book and select them easily during checkout.
AddWeb Woo Multi-address
addweb-woo-multi-address
Manage and use multiple billing and shipping addresses in WooCommerce — with full support for classic, Elementor, and block-based checkouts.
H-Shipping Multiple Shipping Addresses for WooCommerce
h-shipping-multiple-addresses-for-woocommerce
Seamlessly allow customers to save and manage up to 3 shipping addresses in WooCommerce. Fully compatible with My Account and Checkout pages.
Multiple Shipping Addresses for WooCommerce (Address Book)
themehigh-multiple-addresses
One best way to let your customers add multiple shipping and billing addresses to their My Account page.
TRS Address Book Developer Profile
5 plugins · 110 total installs
How We Detect TRS Address Book
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/trs-address-book/assets/css/address-style.css/wp-content/plugins/trs-address-book/assets/js/jquery.js/wp-content/plugins/trs-address-book/assets/js/main.js/wp-content/plugins/trs-address-book/assets/js/jquery.js/wp-content/plugins/trs-address-book/assets/js/main.jsHTML / DOM Fingerprints
main-address-sectionmy-account-address-sectioncheckout-label-radio-wrappercheckout-default-radio-btnaddress-sectiondefaultAddressBoxedit-areaaddressEdit+6 moredata-metaiddata-lastnamedata-address1data-address2data-citydata-postcode+1 more