
Ubigeo de Perú para Woocommerce y WordPress Security & Risk Analysis
wordpress.org/plugins/ubigeo-peruThis plugin adds the Ubigeo Peru to the Woocommerce checkout - _departamento - _provincia - _distrito
Is Ubigeo de Perú para Woocommerce y WordPress Safe to Use in 2026?
Generally Safe
Score 100/100Ubigeo de Perú para Woocommerce y WordPress has a strong security track record. Known vulnerabilities have been patched promptly.
The ubigeo-peru plugin v4.7 exhibits a mixed security posture. While it demonstrates good practices by utilizing prepared statements for all SQL queries and avoids file operations and external HTTP requests, significant concerns arise from its attack surface and lack of authorization checks. All 8 identified AJAX handlers are exposed without any form of authentication, creating a wide entry point for potential attackers. This, coupled with the presence of 5 taint flows with unsanitized paths, albeit without critical or high severity ratings, suggests a susceptibility to certain types of vulnerabilities if not carefully managed. The plugin's vulnerability history indicates a past medium-severity SQL injection vulnerability, which, while currently patched, highlights a potential area of weakness that attackers might try to exploit again.
Key Concerns
- 8 AJAX handlers without auth checks
- 5 taint flows with unsanitized paths
- No nonce checks on AJAX handlers
- No capability checks on AJAX handlers
- 65% output properly escaped (35% unescaped)
- 1 medium severity CVE in history
Ubigeo de Perú para Woocommerce y WordPress Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Ubigeo de Perú para Woocommerce y WordPress <= 3.6.3 - Unauthenticated SQL Injection
Ubigeo de Perú para Woocommerce y WordPress Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Ubigeo de Perú para Woocommerce y WordPress Attack Surface
AJAX Handlers 8
WordPress Hooks 31
Maintenance & Trust
Ubigeo de Perú para Woocommerce y WordPress Maintenance & Trust
Maintenance Signals
Community Trust
Ubigeo de Perú para Woocommerce y WordPress Alternatives
WC Provincia Canton Distrito
wc-provincia-canton-distrito
This plugin allows you to populate your custom states, cities, and postcodes for WooCommerce.
Provinces and Districts of Panama for WooCommerce
provinces-and-districts-of-panama-for-woocommerce
Provinces, Districts and Corregimientos of Panama for WooCommerce.
Departamentos y Ciudades de Colombia para Woocommerce
departamentos-y-ciudades-de-colombia-para-woocommerce
WordPress plugin that shows dropdowns for State and City Select for WooCommerce
Libro de Reclamaciones y Quejas
libro-de-reclamaciones-y-quejas
Libro de reclamaciones válido para Perú con los campos obligatorios exigidos por Indecopi.
Culqi
culqi-checkout
Conéctate a nuestra pasarela de pago CulqiOnline de forma segura y estable en tu tienda virtual.
Ubigeo de Perú para Woocommerce y WordPress Developer Profile
11 plugins · 9K total installs
How We Detect Ubigeo de Perú para Woocommerce y WordPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ubigeo-peru/assets/css/style.css/wp-content/plugins/ubigeo-peru/assets/js/script.js/wp-content/plugins/ubigeo-peru/assets/js/admin-script.jsubigeo-peru/assets/css/style.css?ver=ubigeo-peru/assets/js/script.js?ver=ubigeo-peru/assets/js/admin-script.js?ver=HTML / DOM Fingerprints
ubigeo-peru-settings-container<!-- Ubigeo Perú Settings Page --><!-- End Ubigeo Perú Settings Page -->data-ubigeo-peru-nonceubigeo_peru_ajax_objectwindow.ubigeoPeruAjax/wp-json/ubigeo-peru/v1/districts/wp-json/ubigeo-peru/v1/provinces[ubigeo_peru_form][ubigeo_peru_address_fields]