Korea Address Field for AMem Security & Risk Analysis

wordpress.org/plugins/amem-address-kr

Adds Korea address field to Advanced Members and ACF

0 active installs v0.1.2 PHP 7.1+ WP 5.8+ Updated Jun 23, 2025
accountaddressadvanced-custom-fieldsadvanced-membersregistration
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Korea Address Field for AMem Safe to Use in 2026?

Generally Safe

Score 100/100

Korea Address Field for AMem has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9mo ago
Risk Assessment

The "amem-address-kr" plugin v0.1.2 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests is a strong positive. The code also demonstrates a commitment to output escaping for the majority of outputs, which helps prevent cross-site scripting vulnerabilities. The vulnerability history showing zero known CVEs further supports a perception of security.

However, a significant concern is the complete lack of any identified attack surface entry points like AJAX handlers, REST API routes, shortcodes, or cron events. While this might seem like a strength, in a plugin designed to provide functionality, the absence of these could indicate either a very limited scope of functionality or, more critically, that these entry points are not properly registered or are being missed by the analysis tool. The presence of capability checks without any clear context of where they are applied is also a point of uncertainty. The absence of nonce checks, while not a direct vulnerability in itself without exposed entry points, is a missed opportunity for defense-in-depth if any entry points were to be discovered or introduced.

In conclusion, while the plugin appears to be clean of known vulnerabilities and adheres to good practices in areas like SQL and output escaping, the complete lack of a discernible attack surface and the absence of nonce checks raise questions about its actual implemention and potential for undiscovered weaknesses. Further investigation into the plugin's intended functionality and the comprehensiveness of the static analysis is recommended.

Key Concerns

  • No identified attack surface entry points
  • No nonce checks implemented
  • Output escaping is not 100%
Vulnerabilities
None known

Korea Address Field for AMem Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Korea Address Field for AMem Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
5 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

71% escaped7 total outputs
Attack Surface

Korea Address Field for AMem Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
filteracf/load_valueacf\fields\class-address-kr.php:79
actionacf/save_postacf\fields\class-address-kr.php:105
actionsetup_themeamem-address-kr.php:57
actionadmin_noticesamem-address-kr.php:170
actionadmin_noticesamem-address-kr.php:175
actionacf/initamem-address-kr.php:179
actionacf/include_field_typesamem-address-kr.php:181
Maintenance & Trust

Korea Address Field for AMem Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJun 23, 2025
PHP min version7.1
Downloads233

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Korea Address Field for AMem Developer Profile

danbilabs

3 plugins · 40 total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Korea Address Field for AMem

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/amem-address-kr/build/assets/css/amem-address-kr.css/wp-content/plugins/amem-address-kr/build/assets/js/amem-address-kr.js
Script Paths
/wp-content/plugins/amem-address-kr/build/assets/js/amem-address-kr.js
Version Parameters
amem-address-kr/build/assets/css/amem-address-kr.css?ver=amem-address-kr/build/assets/js/amem-address-kr.js?ver=

HTML / DOM Fingerprints

CSS Classes
amem-addramem-addr-addr1amem-addr-addr2amem-addr-zip
Data Attributes
data-amem-address-kr
JS Globals
amem_address_kr_params
FAQ

Frequently Asked Questions about Korea Address Field for AMem