Cart Additional Fee For WooCommerce Security & Risk Analysis

wordpress.org/plugins/woo-cart-additional-fee

Add Additional Fee to your Customer Cart Based on Some Filters.

40 active installs v2.0.7 PHP 8.0+ WP 5.6+ Updated Dec 10, 2025
additional-feecart-feecustom-feeextra-feewoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cart Additional Fee For WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Cart Additional Fee For WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

Based on the static analysis and vulnerability history provided, the "woo-cart-additional-fee" plugin v2.0.7 exhibits a strong security posture. The absence of any identified dangerous functions, direct SQL queries, file operations, or external HTTP requests is commendable. Furthermore, the analysis indicates that all SQL queries utilize prepared statements and all output is properly escaped, mitigating common injection and XSS vulnerabilities. The lack of any recorded CVEs, critical or otherwise, also suggests a history of secure development or prompt patching.

However, the static analysis reveals a concerning lack of security checks for its entry points, which are none in this case. While the absence of AJAX handlers, REST API routes, shortcodes, and cron events means there are no direct attack vectors identified, it also means there are no explicit capability or nonce checks implemented. This could be a potential weakness if functionality were to be added in the future without proper security controls. The absence of taint analysis results is also noteworthy, though this may simply reflect the limited complexity or entry points of the plugin.

In conclusion, the plugin currently appears very secure due to its minimal attack surface and robust handling of core security practices like SQL preparation and output escaping. The vulnerability history further reinforces this. The primary area for caution is the lack of implemented security checks (nonces, capabilities) on any potential future entry points, which is a missed opportunity for proactive security.

Key Concerns

  • No nonce checks implemented
  • No capability checks implemented
Vulnerabilities
None known

Cart Additional Fee For WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Cart Additional Fee For WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
9 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped9 total outputs
Attack Surface

Cart Additional Fee For WooCommerce Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_enqueue_scriptsincludes\class-woo-cart-additional-fee.php:115
actionadmin_noticesincludes\class-woo-cart-additional-fee.php:119
actionbefore_woocommerce_initincludes\class-woo-cart-additional-fee.php:121
filterwoocommerce_settings_tabs_arrayincludes\class-woo-cart-additional-fee.php:123
actionwoocommerce_settings_tabs_wcfee_settingsincludes\class-woo-cart-additional-fee.php:124
actionwoocommerce_update_options_wcfee_settingsincludes\class-woo-cart-additional-fee.php:125
actionwoocommerce_cart_calculate_feesincludes\class-woo-cart-additional-fee.php:138
Maintenance & Trust

Cart Additional Fee For WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version8.0
Downloads4K

Community Trust

Rating80/100
Number of ratings4
Active installs40
Developer Profile

Cart Additional Fee For WooCommerce Developer Profile

Sajjad Hossain Sagor

32 plugins · 10K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
139 days
View full developer profile
Detection Fingerprints

How We Detect Cart Additional Fee For WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woo-cart-additional-fee/includes/js/frontend.js/wp-content/plugins/woo-cart-additional-fee/admin/js/admin.js
Script Paths
/wp-content/plugins/woo-cart-additional-fee/includes/js/frontend.js/wp-content/plugins/woo-cart-additional-fee/admin/js/admin.js
Version Parameters
woo-cart-additional-fee/includes/js/frontend.js?ver=woo-cart-additional-fee/admin/js/admin.js?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Cart Additional Fee For WooCommerce --><!-- Cart Additional Fee For WooCommerce Settings -->
Data Attributes
data-wcfee-product-filterdata-wcfee-country-filterdata-wcfee-type-filter
JS Globals
WooCartAdditionalFee
FAQ

Frequently Asked Questions about Cart Additional Fee For WooCommerce