Eniture develops a focused line of shipping-quote plugins and integrations for e-commerce platforms, serving as a critical pricing and logistics layer for freight and small-package calculations. Vulnerabilities affecting the vendor skew toward serious outcomes and recur through application-layer weakness classes including SQL injection, cross-site scripting, and missing authorization controls that are characteristic of web-facing integration points. Defenders should prioritize patching and access controls around these plugins given their role in order processing; live severity and exploitation counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Eniture over time
Signals from CVEs in this vendor scope (19 CVEs).
19 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-13477CRITICAL The LTL Freight Quotes – Unishippers Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 2.5.8 due to insu | Feb 12, 2025 | 9.8 | 27 | NO | NO |
CVE-2025-22289CRITICAL Missing Authorization vulnerability in enituretechnology LTL Freight Quotes – Unishippers Edition ltl-freight-quotes-unishippers-edition allows Exploiting Incorrectly Configured Ac | Feb 16, 2025 | 9.8 | 26 | NO | NO |
CVE-2024-13481HIGH The LTL Freight Quotes – R+L Carriers Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and inc | Feb 19, 2025 | 7.5 | 25 | NO | NO |
CVE-2024-13478HIGH The LTL Freight Quotes – TForce Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship_edit_id' and 'edit_id' parameters in all versions up to, and including | Feb 19, 2025 | 7.5 | 25 | NO | NO |
CVE-2024-13489HIGH The LTL Freight Quotes – Old Dominion Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and inc | Feb 19, 2025 | 7.5 | 24 | NO | NO |
CVE-2024-13485HIGH The LTL Freight Quotes – ABF Freight Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and incl | Feb 19, 2025 | 7.5 | 23 | NO | NO |
CVE-2024-13483HIGH The LTL Freight Quotes – SAIA Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, | Feb 19, 2025 | 7.5 | 23 | NO | NO |
CVE-2024-13479HIGH The LTL Freight Quotes – SEFL Edition plugin for WordPress is vulnerable to SQL Injection via the 'dropship_edit_id' and 'edit_id' parameters in all versions up to, and including, | Feb 19, 2025 | 7.5 | 23 | NO | NO |
CVE-2024-13476HIGH The LTL Freight Quotes – GlobalTranz Edition plugin for WordPress is vulnerable to SQL Injection via the 'engtz_wd_save_dropship' AJAX endpoint in all versions up to, and including | Feb 20, 2025 | 7.5 | 22 | NO | NO |
CVE-2024-13533HIGH The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 1.3.5 due to insuffici | Feb 19, 2025 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (19 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Eniture.
Media articles that mention a CVE ID that affects a product developed by Eniture — matched by CVE ID, not by vendor name.