
[凹凸曼]显示IP归属地 Security & Risk Analysis
wordpress.org/plugins/apoyl-ip实现发布文章记录IP地址,用户发布文章显示IP归属地,评论显示IP归属地,更加方便了解用户来自哪里.
Is [凹凸曼]显示IP归属地 Safe to Use in 2026?
Generally Safe
Score 92/100[凹凸曼]显示IP归属地 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "apoyl-ip" plugin v1.6.0 exhibits a generally strong security posture, primarily due to its minimal attack surface and the absence of known vulnerabilities. The static analysis reveals no AJAX handlers, REST API routes, shortcodes, or cron events, significantly reducing the potential entry points for attackers. This is a positive indicator of secure coding practices. Furthermore, the taint analysis shows no high or critical severity flows, and there are no recorded CVEs, suggesting a mature and stable codebase. The presence of a nonce check is also a good sign. However, there are a couple of areas for improvement. The plugin uses raw SQL queries without prepared statements, which, while not immediately exploitable in this context due to the lack of entry points, represents a potential risk if new entry points are added or existing ones are modified. Additionally, while most output is properly escaped, 15% is not, which could lead to cross-site scripting (XSS) vulnerabilities in specific scenarios. Overall, "apoyl-ip" v1.6.0 appears to be a secure plugin with a low risk profile, but addressing the raw SQL queries and ensuring 100% output escaping would further solidify its security.
Key Concerns
- Raw SQL queries without prepared statements
- Unescaped output (15% of total)
[凹凸曼]显示IP归属地 Security Vulnerabilities
[凹凸曼]显示IP归属地 Release Timeline
[凹凸曼]显示IP归属地 Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
[凹凸曼]显示IP归属地 Attack Surface
WordPress Hooks 6
Maintenance & Trust
[凹凸曼]显示IP归属地 Maintenance & Trust
Maintenance Signals
Community Trust
[凹凸曼]显示IP归属地 Alternatives
IP Location Block
ip-location-block
Easily block visitors by country, state or ISP provider. Also, protects your site from spam, login attempts, malicious access & more.
User IP and Location
user-ip-and-location
Want to show your website visitors their IP address, location, and other cool details? This plugin makes it super easy! Now works perfectly with cachi …
DocoDoco Country Redirection
docodoco-country-redirection
サイト訪問者のアクセス元の国もしくは匿名アクセスを判定して、表示するページを切り替えるためのプラグインです。
DocoDoco GeoTargeting
docodoco-geotargeting
サイト訪問者のアクセス元の国や企業属性に基づき、表示するコンテンツを切り替えるためのプラグインです。
Shift8 GEO IP Location
shift8-geoip-location
Plugin that utilizes ip-api to get geolocation coordinates based on the end-users' IP address. Read the blog post detailing how to interact with …
[凹凸曼]显示IP归属地 Developer Profile
29 plugins · 740 total installs
How We Detect [凹凸曼]显示IP归属地
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/apoyl-ip/admin/css/admin.css/wp-content/plugins/apoyl-ip/admin/js/admin.js/wp-content/plugins/apoyl-ip/public/css/public.cssapoyl-ip/admin/css/admin.css?ver=apoyl-ip/admin/js/admin.js?ver=apoyl-ip/public/css/public.css?ver=