Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Security & Risk Analysis

wordpress.org/plugins/wanderlust-autocompletado-del-checkout

Este plugin permite a tus clientes autocompletar el 90% los datos del checkout obteniendo la informacion desde la AFIP / ARCA.

200 active installs v0.8 PHP + WP 5.0+ Updated Feb 11, 2025
afiparcawoocommerce
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Safe to Use in 2026?

Generally Safe

Score 92/100

Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "wanderlust-autocompletado-del-checkout" v0.8 exhibits a concerning security posture primarily due to its unprotected entry points. With two AJAX handlers identified and neither possessing authentication or capability checks, this presents a significant attack surface. While the static analysis shows no dangerous functions, raw SQL queries, or file operations, and there are no recorded vulnerabilities in its history, the lack of basic security measures on its AJAX endpoints is a critical oversight. The presence of an external HTTP request also warrants attention, as its target and purpose are not detailed in the provided data, potentially introducing risks if not handled securely. Overall, while the plugin seems to avoid common pitfalls like unpatched CVEs or easily exploitable code patterns, the exposed AJAX handlers leave it vulnerable to unauthorized execution of its functions.

Key Concerns

  • AJAX handlers without auth checks
  • AJAX handlers without capability checks
  • External HTTP requests (potential risk)
  • 60% of output escaping properly handled
Vulnerabilities
None known

Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

60% escaped5 total outputs
Attack Surface
2 unprotected

Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_wanderlust_get_customer_dataindex.php:24
noprivwp_ajax_wanderlust_get_customer_dataindex.php:25
WordPress Hooks 7
actionwoocommerce_checkout_fieldsclass-dni.php:11
actionwoocommerce_checkout_processclass-dni.php:13
actionwoocommerce_checkout_update_order_metaclass-dni.php:14
actionwoocommerce_admin_order_data_after_billing_addressclass-dni.php:15
filterwoocommerce_email_order_meta_keysclass-dni.php:16
actionbefore_woocommerce_initindex.php:17
actionwp_enqueue_scriptsindex.php:83
Maintenance & Trust

Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedFeb 11, 2025
PHP min version
Downloads3K

Community Trust

Rating100/100
Number of ratings1
Active installs200
Developer Profile

Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA Developer Profile

Wanderlust Codes

6 plugins · 2K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
200 days
View full developer profile
Detection Fingerprints

How We Detect Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wanderlust-autocompletado-del-checkout/fee.js
Script Paths
/wp-content/plugins/wanderlust-autocompletado-del-checkout/fee.js
Version Parameters
wanderlust-autocompletado-del-checkout/fee.js?ver=

HTML / DOM Fingerprints

CSS Classes
form-row-firstform-row-widewoocommerce-FormRowwoocommerce-FormRow--widewoocommerce-Inputwoocommerce-Input--text
Data Attributes
billing_dni_afipreg_billing_dni_afipma_billing_dni_afip
REST Endpoints
/wp-ajax.php?action=wanderlust_get_customer_data
FAQ

Frequently Asked Questions about Wanderlust – Autocompletar dirección de Facturación – AFIP / ARCA