WP WooCommerce Product Delivery Date Security & Risk Analysis

wordpress.org/plugins/wp-woocommerce-product-delivery-date

WooCommerce Product Delivery Date to enable Delivery date per Product

0 active installs v1.0 PHP + WP 4.9+ Updated Oct 16, 2018
delivery-dateproduct-delivery-datewoocommerce-product-delivery-date
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP WooCommerce Product Delivery Date Safe to Use in 2026?

Generally Safe

Score 85/100

WP WooCommerce Product Delivery Date has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the wp-woocommerce-product-delivery-date v1.0 plugin exhibits a generally good security posture, with no identified vulnerabilities or critical security flaws.

The code analysis reveals no dangerous functions, file operations, external HTTP requests, or known vulnerabilities in the bundled Select2 library. The absence of any identified SQL queries and the presence of prepared statements further indicate a strong approach to database security. However, a significant concern arises from the 0% output escaping, which means all nine identified output points are potentially vulnerable to cross-site scripting (XSS) attacks. This lack of proper output sanitization is a critical weakness despite the other positive security signals.

The plugin's vulnerability history is clean, with no recorded CVEs, which is a positive indicator of past security diligence. The combination of no known vulnerabilities and the use of prepared statements suggests a commitment to secure coding practices. Nevertheless, the complete lack of output escaping represents a severe oversight that must be addressed. While the attack surface appears to be minimal, the vulnerability within the output handling could still be exploited if user-provided data is not correctly sanitized before being displayed.

Key Concerns

  • No output escaping
Vulnerabilities
None known

WP WooCommerce Product Delivery Date Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

WP WooCommerce Product Delivery Date Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

WP WooCommerce Product Delivery Date Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
9
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select2

Output Escaping

0% escaped9 total outputs
Attack Surface

WP WooCommerce Product Delivery Date Attack Surface

Entry Points0
Unprotected0
Maintenance & Trust

WP WooCommerce Product Delivery Date Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedOct 16, 2018
PHP min version
Downloads997

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

WP WooCommerce Product Delivery Date Developer Profile

Ramandeep Singh

4 plugins · 70 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP WooCommerce Product Delivery Date

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp-woocommerce-product-delivery-date/assets/js/admin-product-options.js/wp-content/plugins/wp-woocommerce-product-delivery-date/assets/css/admin-product-options.css

HTML / DOM Fingerprints

CSS Classes
product_delivery_datewpwc-field-groupis_delivery_date_enabled_controljs-select
Data Attributes
name="is_delivery_date_enabled"name="delivery_days_available[]"
FAQ

Frequently Asked Questions about WP WooCommerce Product Delivery Date