
Wuunder Dynamic Checkout Security & Risk Analysis
wordpress.org/plugins/wuunder-dynamic-checkoutTHE MOST INNOVATIVE SHIPPING PLATFORM FOR ALL YOUR SHIPMENTS WORLDWIDE
Is Wuunder Dynamic Checkout Safe to Use in 2026?
Generally Safe
Score 85/100Wuunder Dynamic Checkout has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wuunder-dynamic-checkout" plugin version 3.2.1 exhibits significant security concerns, primarily due to its unprotected entry points. The static analysis reveals a total of 3 entry points (2 AJAX handlers and 1 REST API route), all of which lack authentication or permission checks. This creates a substantial attack surface, potentially allowing unauthorized users to trigger sensitive functionality. Furthermore, the plugin's output escaping is suboptimal, with only 36% of outputs being properly escaped, raising the risk of cross-site scripting (XSS) vulnerabilities. While there are no known CVEs for this plugin and it does not appear to use dangerous functions or perform raw SQL queries without prepared statements, the lack of basic security measures on its exposed entry points is a critical weakness. The absence of nonce checks and capability checks on AJAX and REST API routes respectively, combined with multiple unsanitized taint flows, points to a high risk of exploitation. The vulnerability history being clean is a positive sign, but it does not mitigate the immediate risks identified in the current codebase.
Key Concerns
- Unprotected AJAX handlers (2)
- Unprotected REST API routes (1)
- Poor output escaping (36% escaped)
- Taint flows with unsanitized paths (3)
- No nonce checks
- No capability checks
Wuunder Dynamic Checkout Security Vulnerabilities
Wuunder Dynamic Checkout Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Wuunder Dynamic Checkout Attack Surface
AJAX Handlers 2
REST API Routes 1
WordPress Hooks 26
Maintenance & Trust
Wuunder Dynamic Checkout Maintenance & Trust
Maintenance Signals
Community Trust
Wuunder Dynamic Checkout Alternatives
Wuunder Shipping Module
wuunder-for-woocommerce
Hello, we are Wuunder
Weight Based Shipping Table Rate for WooCommerce – Flexible Shipping
flexible-shipping
Weight based shipping methods for WooCommerce. Flexible shipping with table rate rules by cart weight and order value. Accurate rates at checkout.
WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels
print-invoices-packing-slip-labels-for-woocommerce
Auto-generate and attach WooCommerce PDF invoices and packing slips to order emails with customizable templates & bulk print options.
Weight Based Shipping for WooCommerce
weight-based-shipping-for-woocommerce
Weight Based Shipping is a flexible and widely-used solution to calculate shipping costs based on the total cart weight and value.
Advanced Shipment Tracking for WooCommerce
woo-advanced-shipment-tracking
Add shipment tracking info to WooCommerce orders, send tracking numbers to customers via email, and let them track deliveries from My Account.
Wuunder Dynamic Checkout Developer Profile
3 plugins · 30 total installs
How We Detect Wuunder Dynamic Checkout
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wuunder-dynamic-checkout/admin/css/wuunder-admin.css/wp-content/plugins/wuunder-dynamic-checkout/admin/js/wuunder-admin.js/wp-content/plugins/wuunder-dynamic-checkout/admin/js/wuunder-admin.jswuunder-admin.css?ver=wuunder-admin.js?ver=HTML / DOM Fingerprints
Wuunder