Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Security & Risk Analysis

wordpress.org/plugins/woocommerce-es

Add VAT Fields, Import European Taxes and check VAT compliance. Connect WooCommerce with ERPs and CRMs. Products, Clients and Orders with ERP/CRM.

1K active installs v3.3.2 PHP 7.4+ WP 6.3+ Updated Dec 23, 2025
connecteu-vatintegratevat-compliancewoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Safe to Use in 2026?

Generally Safe

Score 100/100

Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "woocommerce-es" plugin version 3.3.2 exhibits a generally good security posture with several strengths, including a high percentage of properly escaped outputs and SQL queries using prepared statements. The absence of any recorded vulnerabilities (CVEs) and a low number of taint flows with unsanitized paths are positive indicators. However, the presence of one AJAX handler without authentication checks represents a significant concern and a potential entry point for attackers.

While the plugin demonstrates good coding practices in many areas, the single unprotected AJAX endpoint requires immediate attention. This could potentially lead to unauthorized actions or data exposure if exploited. The fact that there are no known vulnerabilities in its history is reassuring, but it does not negate the risk posed by the identified unprotected entry point. Overall, "woocommerce-es" 3.3.2 is relatively secure but has a critical flaw that needs to be addressed to maintain a strong security standing.

Key Concerns

  • AJAX handler without authentication check
Vulnerabilities
None known

Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Code Analysis

Dangerous Functions
0
Raw SQL Queries
7
17 prepared
Unescaped Output
22
291 escaped
Nonce Checks
9
Capability Checks
5
File Operations
2
External Requests
5
Bundled Libraries
0

SQL Query Safety

71% prepared24 total queries

Output Escaping

93% escaped313 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

5 flows2 with unsanitized paths
create_admin_page (includes\Admin\Settings.php:207)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Attack Surface

Entry Points11
Unprotected1

AJAX Handlers 11

authwp_ajax_connect_ecommerce_sync_productsincludes\Admin\Import_Products.php:89
authwp_ajax_conecom_dismiss_review_noticeincludes\Admin\Notices.php:18
authwp_ajax_connect_ecommerce_sync_ordersincludes\Admin\Orders.php:73
authwp_ajax_sync_erp_orderincludes\Admin\Orders.php:100
noprivwp_ajax_sync_erp_orderincludes\Admin\Orders.php:101
authwp_ajax_connect_ecommerce_test_alertincludes\Admin\Settings.php:163
authwp_ajax_connect_update_tax_ratesincludes\Admin\Taxes_Rates.php:36
authwp_ajax_woocommerce_tax_rates_save_changesincludes\Admin\Taxes_Types_ERP.php:50
authwp_ajax_cwc_document_downloadincludes\Frontend\MyAccount.php:83
authwp_ajax_conecom_validate_vatincludes\Helpers\VAT.php:689
noprivwp_ajax_conecom_validate_vatincludes\Helpers\VAT.php:690
WordPress Hooks 50
actionadmin_enqueue_scriptsincludes\Admin\Import_Products.php:79
actionadmin_noticesincludes\Admin\Notices.php:17
actionwoocommerce_order_status_pendingincludes\Admin\Orders.php:76
actionwoocommerce_order_status_failedincludes\Admin\Orders.php:77
actionwoocommerce_order_status_processingincludes\Admin\Orders.php:78
actionwoocommerce_order_status_refundedincludes\Admin\Orders.php:79
actionwoocommerce_order_status_cancelledincludes\Admin\Orders.php:80
actionwoocommerce_refund_createdincludes\Admin\Orders.php:81
actionwoocommerce_payment_completeincludes\Admin\Orders.php:83
actionwoocommerce_order_status_completedincludes\Admin\Orders.php:85
filterwoocommerce_email_attachmentsincludes\Admin\Orders.php:89
filtermanage_woocommerce_page_wc-orders_columnsincludes\Admin\Orders.php:93
actionmanage_woocommerce_page_wc-orders_custom_columnincludes\Admin\Orders.php:94
filtermanage_edit-shop_order_columnsincludes\Admin\Orders.php:96
actionmanage_shop_order_posts_custom_columnincludes\Admin\Orders.php:97
actionadmin_menuincludes\Admin\Settings.php:161
actionadmin_initincludes\Admin\Settings.php:162
actionadmin_post_connect_ecommerce_save_payment_methodsincludes\Admin\Settings_Payment_Methods.php:60
actionadmin_enqueue_scriptsincludes\Admin\Taxes_Rates.php:37
actionadmin_enqueue_scriptsincludes\Admin\Taxes_Types_ERP.php:47
actionadd_meta_boxesincludes\Admin\Widget_Order.php:50
actionadd_meta_boxesincludes\Admin\Widget_Product.php:50
filterwoocommerce_checkout_fieldsincludes\Connector\class-api-clientify.php:44
actionwp_enqueue_scriptsincludes\Connector\class-api-clientify.php:45
actionwoocommerce_after_checkout_formincludes\Connector\class-api-clientify.php:46
filterwoocommerce_billing_fieldsincludes\Frontend\Checkout.php:46
filterwoocommerce_admin_billing_fieldsincludes\Frontend\Checkout.php:47
filterwoocommerce_admin_shipping_fieldsincludes\Frontend\Checkout.php:48
filterwoocommerce_load_order_dataincludes\Frontend\Checkout.php:49
actionwoocommerce_email_after_order_tableincludes\Frontend\Checkout.php:50
filterwpo_wcpdf_billing_addressincludes\Frontend\Checkout.php:51
filterwoocommerce_checkout_fieldsincludes\Frontend\Checkout.php:55
actionwoocommerce_initincludes\Frontend\Checkout.php:58
actionwp_loadedincludes\Frontend\Checkout.php:59
actionwoocommerce_checkout_update_order_metaincludes\Frontend\Checkout.php:63
actionwoocommerce_admin_order_data_after_billing_addressincludes\Frontend\Checkout.php:64
filterwoocommerce_package_ratesincludes\Frontend\Checkout.php:69
actionwoocommerce_register_formincludes\Frontend\Checkout.php:74
actionwoocommerce_register_postincludes\Frontend\Checkout.php:75
actionwoocommerce_after_checkout_validationincludes\Frontend\Checkout.php:82
actionwoocommerce_checkout_order_processedincludes\Frontend\Checkout.php:83
actionwoocommerce_store_api_checkout_update_order_from_requestincludes\Frontend\Checkout.php:86
actionwp_enqueue_scriptsincludes\Frontend\Checkout.php:91
filterwoocommerce_product_get_tax_classincludes\Frontend\Checkout.php:98
filterwoocommerce_product_variation_get_tax_classincludes\Frontend\Checkout.php:99
actionwoocommerce_checkout_update_order_reviewincludes\Frontend\Checkout.php:102
filterwoocommerce_account_orders_columnsincludes\Frontend\MyAccount.php:81
actionwoocommerce_my_account_my_orders_column_custom-columnincludes\Frontend\MyAccount.php:82
actioninitwoocommerce-es.php:85
actioncli_initwoocommerce-es.php:112
Maintenance & Trust

Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 23, 2025
PHP min version7.4
Downloads90K

Community Trust

Rating92/100
Number of ratings10
Active installs1K
Developer Profile

Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance Developer Profile

Close·technology

3 plugins · 1K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/woocommerce-es/includes/assets/admin.css/wp-content/plugins/woocommerce-es/includes/assets/repeatable-fields.js/wp-content/plugins/woocommerce-es/includes/assets/sync-import.js/wp-content/plugins/woocommerce-es/includes/assets/sync-order-widget.js
Script Paths
/wp-content/plugins/woocommerce-es/includes/assets/repeatable-fields.js/wp-content/plugins/woocommerce-es/includes/assets/sync-import.js/wp-content/plugins/woocommerce-es/includes/assets/sync-order-widget.js
Version Parameters
woocommerce-es/includes/assets/admin.css?ver=woocommerce-es/includes/assets/repeatable-fields.js?ver=woocommerce-es/includes/assets/sync-import.js?ver=woocommerce-es/includes/assets/sync-order-widget.js?ver=

HTML / DOM Fingerprints

CSS Classes
woocommerce-es
JS Globals
ConEcom_ajaxActionConEcom_ajaxActionOrder
FAQ

Frequently Asked Questions about Connect WooCommerce Shop to ERP/CRM, Verifactu and EU/VAT Compliance