
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Security & Risk Analysis
wordpress.org/plugins/5usujian-super-serv在网站侧边添加优美的电话、QQ、旺旺客服悬浮窗
Is QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Safe to Use in 2026?
Generally Safe
Score 85/100QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin '5usujian-super-serv' v1.6 exhibits a mixed security posture. On the positive side, there are no known CVEs associated with this plugin, and all SQL queries are properly prepared, indicating good database security practices. The absence of external HTTP requests and the use of a nonce check are also positive signs. However, the code analysis reveals significant areas of concern. A large percentage of output is not properly escaped, posing a risk of cross-site scripting (XSS) vulnerabilities. The presence of the `create_function` dangerous function is a red flag, as it can lead to arbitrary code execution if used with untrusted input. Furthermore, the plugin lacks any capability checks on its entry points, meaning any authenticated user could potentially interact with its functionality, increasing the attack surface. The absence of taint analysis results is neutral but doesn't provide assurance of security in that area. Overall, while the plugin demonstrates some good practices, the unescaped output and the use of `create_function` without proper sanitization present notable risks that require immediate attention.
Key Concerns
- Significant portion of output not properly escaped
- Use of dangerous function create_function
- No capability checks on entry points
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Security Vulnerabilities
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Code Analysis
Dangerous Functions Found
Output Escaping
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Maintenance & Trust
Maintenance Signals
Community Trust
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Alternatives
WP Mail SMTP by WPForms – The Most Popular SMTP and Email Log Plugin
wp-mail-smtp
Make email delivery easy for WordPress. Connect with SMTP, Gmail, Outlook, SendGrid, Mailgun, SES, Zoho, + more. Rated #1 WordPress SMTP Email plugin.
Hostinger Reach – AI-Powered Email Marketing for WordPress
hostinger-reach
Launch and grow your email marketing effortlessly with Hostinger Reach. Collect contacts, sync subscribers, and send emails – all in one, AI powered.
MC4WP: Mailchimp for WordPress
mailchimp-for-wp
The #1 Mailchimp plugin for WordPress. Allows you to add a multitude of newsletter sign-up methods to your site.
Easy WP SMTP – WordPress SMTP and Email Logs: Gmail, Office 365, Outlook, Custom SMTP, and more
easy-wp-smtp
Make SMTP email sending and delivery easy. Configure Gmail, Outlook, Brevo, SendGrid, Mailgun, SendLayer or connect to any SMTP server.
MailPoet – Newsletters, Email Marketing, and Automation
mailpoet
Send beautiful newsletters from WordPress. Collect subscribers with signup forms, automate your emails for WooCommerce, blog post notifications & more
QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv Developer Profile
1 plugin · 200 total installs
How We Detect QQ旺旺Skype微信电话二维码客服WordPress插件 5usujian super serv
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/5usujian-super-serv/asset/css/jquery.minicolors.css/wp-content/plugins/5usujian-super-serv/asset/css/wysj-iconfont.css/wp-content/plugins/5usujian-super-serv/asset/css/5usujian-serv-admin.css/wp-content/plugins/5usujian-super-serv/asset/js/jquery.minicolors.min.js/wp-content/plugins/5usujian-super-serv/asset/js/5usujian-serv-admin.js5usujian-super-serv/asset/js/jquery.minicolors.min.js?ver=5usujian-super-serv/asset/js/5usujian-serv-admin.js?ver=5usujian-super-serv/asset/css/jquery.minicolors.css?ver=5usujian-super-serv/asset/css/wysj-iconfont.css?ver=5usujian-super-serv/asset/css/5usujian-serv-admin.css?ver=HTML / DOM Fingerprints
wy-servwy-serv-formwy-tab-headerwysj-active-statuswysj-status-deactivewy-tabwy-tab-itemwy-con-item+1 more<!-- 图标选择框 --><!-- 升级 完整版 解锁所有功能 -->name="wysj_super_serv_form"onsubmit="return false;"name="wy_enable"name="wy_mobile"name="wy_mobileHide"wysjAdminPluginBase<div class="wy-serv">