Zip Code Based Product Price for WooCommerce Security & Risk Analysis

wordpress.org/plugins/zip-code-based-product-price

Revolutionize with the 'Zip Code Based Product Price for WooCommerce' Plugin. A great plugin to help you sell your products based on zip codes.

10 active installs v1.0.9 PHP 7.4+ WP 4.7+ Updated Jun 15, 2025
product-priceshippingshipping-costwoocommercezip-code
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Zip Code Based Product Price for WooCommerce Safe to Use in 2026?

Generally Safe

Score 100/100

Zip Code Based Product Price for WooCommerce has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The "zip-code-based-product-price" plugin, version 1.0.9, exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL queries without prepared statements, and external HTTP requests are all positive indicators. Furthermore, the plugin demonstrates good output escaping practices with 95% of outputs being properly handled, and it includes a reasonable number of nonce checks. The total entry points are low, and importantly, none are identified as unprotected.

The vulnerability history is also clean, with no known CVEs recorded for this plugin. This lack of past vulnerabilities, combined with the current static analysis findings, suggests a well-maintained and securely developed plugin. However, the complete absence of capability checks for the identified entry points (shortcodes) is a notable concern. While there are nonce checks present, relying solely on nonces without proper user capability verification can still expose functionality to unauthorized users if nonces are compromised or predictable.

In conclusion, the plugin is in good shape regarding common vulnerabilities and secure coding practices. The main area for improvement lies in implementing robust capability checks for its shortcodes to further strengthen its security against potential privilege escalation or unauthorized access scenarios. The current risk is assessed as low, but this could be improved by addressing the capability check gap.

Key Concerns

  • No capability checks on entry points
Vulnerabilities
None known

Zip Code Based Product Price for WooCommerce Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Zip Code Based Product Price for WooCommerce Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
122 escaped
Nonce Checks
4
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

95% escaped128 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
handle_submit_form (inc\admin\admin.php:124)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Zip Code Based Product Price for WooCommerce Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[location_popup_link] inc\class-woocommerce.php:271
[location_popup_link] templates\request-location.php:16
WordPress Hooks 44
actioninitinc\admin\admin.php:38
actionadmin_menuinc\admin\admin.php:39
actionadmin_enqueue_scriptsinc\admin\admin.php:40
actionadmin_enqueue_scriptsinc\admin\product-fields.php:21
actionwoocommerce_process_product_metainc\admin\product-fields.php:22
actionwoocommerce_save_product_variationinc\admin\product-fields.php:23
actionwoocommerce_product_options_pricinginc\admin\product-fields.php:24
actionwoocommerce_variation_options_pricinginc\admin\product-fields.php:25
actionadmin_footerinc\admin\product-fields.php:26
actionwoocommerce_grouped_product_list_before_quantityinc\class-product-grouped.php:24
actionwoocommerce_grouped_product_list_after_quantityinc\class-product-grouped.php:25
filterwoocommerce_quantity_input_argsinc\class-product-grouped.php:27
filterwoocommerce_grouped_product_list_column_priceinc\class-product-grouped.php:28
filterwoocommerce_product_variation_get_priceinc\class-product-variable.php:22
filterwoocommerce_product_variation_get_sale_priceinc\class-product-variable.php:23
filterwoocommerce_product_variation_get_regular_priceinc\class-product-variable.php:24
filterwoocommerce_variation_prices_priceinc\class-product-variable.php:26
filterwoocommerce_variation_prices_sale_priceinc\class-product-variable.php:27
filterwoocommerce_variation_prices_regular_priceinc\class-product-variable.php:28
filterwoocommerce_variation_pricesinc\class-product-variable.php:30
filterwc_get_templateinc\class-woocommerce.php:41
filterwc_get_templateinc\class-woocommerce.php:42
filterwoocommerce_get_price_htmlinc\class-woocommerce.php:43
filterwoocommerce_loop_add_to_cart_linkinc\class-woocommerce.php:44
filterwoocommerce_product_get_priceinc\class-woocommerce.php:46
filterwoocommerce_product_get_sale_priceinc\class-woocommerce.php:47
filterwoocommerce_product_get_regular_priceinc\class-woocommerce.php:48
filterwoocommerce_checkout_fieldsinc\class-woocommerce.php:50
filterwoocommerce_checkout_get_valueinc\class-woocommerce.php:51
filterwoocommerce_customer_get_shipping_postcodeinc\class-woocommerce.php:52
filterwoocommerce_form_field_argsinc\class-woocommerce.php:59
filterwoocommerce_get_cart_contentsinc\class-woocommerce.php:61
actioninitinc\main.php:73
filterplugin_action_linksinc\main.php:74
actionwp_enqueue_scriptsinc\main.php:75
actionwp_footerinc\main.php:76
actionwp_footerinc\main.php:77
actionzip_code_based_product_price/popup_form_optionsinc\main.php:78
actionbefore_woocommerce_initzip-code-based-product-price.php:33
actioninitzip-code-based-product-price.php:47
actionadmin_noticeszip-code-based-product-price.php:57
actionadmin_noticeszip-code-based-product-price.php:62
actionplugins_loadedzip-code-based-product-price.php:68
actioninitzip-code-based-product-price.php:135
Maintenance & Trust

Zip Code Based Product Price for WooCommerce Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJun 15, 2025
PHP min version7.4
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Zip Code Based Product Price for WooCommerce Developer Profile

Zahabul Islam

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Zip Code Based Product Price for WooCommerce

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/zip-code-based-product-price/assets/css/frontend.css/wp-content/plugins/zip-code-based-product-price/assets/css/frontend_style.css/wp-content/plugins/zip-code-based-product-price/assets/js/frontend.js/wp-content/plugins/zip-code-based-product-price/assets/js/frontend_script.js/wp-content/plugins/zip-code-based-product-price/assets/js/public/checkout.js/wp-content/plugins/zip-code-based-product-price/assets/css/public/checkout.css/wp-content/plugins/zip-code-based-product-price/assets/js/public/single-product.js/wp-content/plugins/zip-code-based-product-price/assets/css/public/single-product.css+4 more
Script Paths
/wp-content/plugins/zip-code-based-product-price/assets/js/frontend.js/wp-content/plugins/zip-code-based-product-price/assets/js/public/checkout.js/wp-content/plugins/zip-code-based-product-price/assets/js/public/single-product.js/wp-content/plugins/zip-code-based-product-price/assets/js/admin/product-fields.js/wp-content/plugins/zip-code-based-product-price/assets/js/admin/settings.js
Version Parameters
zip-code-based-product-price/assets/css/frontend.css?ver=zip-code-based-product-price/assets/css/frontend_style.css?ver=zip-code-based-product-price/assets/js/frontend.js?ver=zip-code-based-product-price/assets/js/frontend_script.js?ver=zip-code-based-product-price/assets/js/public/checkout.js?ver=zip-code-based-product-price/assets/css/public/checkout.css?ver=zip-code-based-product-price/assets/js/public/single-product.js?ver=zip-code-based-product-price/assets/css/public/single-product.css?ver=zip-code-based-product-price/assets/js/admin/product-fields.js?ver=zip-code-based-product-price/assets/css/admin/product-fields.css?ver=zip-code-based-product-price/assets/js/admin/settings.js?ver=zip-code-based-product-price/assets/css/admin/settings.css?ver=

HTML / DOM Fingerprints

CSS Classes
zip-code-based-product-price-location-widgetbtn-zip-code-based-pricezip-code-based-product-price-location-popup
HTML Comments
<!-- Default CSS --><!-- Default JS --><!-- Frontend JS --><!-- Frontend CSS -->+2 more
Data Attributes
data-product-iddata-location-selector
JS Globals
zip_code_based_product_price_frontend_ajax_object
FAQ

Frequently Asked Questions about Zip Code Based Product Price for WooCommerce