Job Applicant Tracking & Staff Directory by SwiftCloud Security & Risk Analysis

wordpress.org/plugins/applicant-tracking-system

Swift Staff

10 active installs v2.1 PHP + WP 5.0+ Updated Jul 12, 2021
job-applicant-tracking-systemjobsstaffstaff-directory
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Job Applicant Tracking & Staff Directory by SwiftCloud Safe to Use in 2026?

Generally Safe

Score 85/100

Job Applicant Tracking & Staff Directory by SwiftCloud has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4yr ago
Risk Assessment

The Applicant Tracking System plugin version 2.1 exhibits a mixed security posture. While it shows strength in its use of prepared statements for all SQL queries and has no known past vulnerabilities, significant concerns arise from its attack surface and taint analysis. Four of its six entry points, including all AJAX handlers, lack authentication checks, creating a wide opening for unauthorized access or manipulation. The presence of two dangerous `unserialize` functions, coupled with two high-severity taint flows with unsanitized paths, presents a critical risk. These flows indicate potential for malicious data to be processed without proper sanitization, which could lead to code execution or data compromise. The plugin's lack of recorded vulnerabilities is a positive sign, but it does not negate the inherent risks identified in the static and taint analysis, suggesting that either vulnerabilities have not been discovered or the limited attack surface in other areas has prevented exploitation. The plugin needs immediate attention to secure its unprotected entry points and address the identified taint vulnerabilities to improve its overall security.

Key Concerns

  • AJAX handlers without auth checks
  • High severity taint flows with unsanitized paths
  • Dangerous function: unserialize
  • Large attack surface without auth (4/6 entry points)
  • Low output escaping percentage (29%)
  • No capability checks
Vulnerabilities
None known

Job Applicant Tracking & Staff Directory by SwiftCloud Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Job Applicant Tracking & Staff Directory by SwiftCloud Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Job Applicant Tracking & Staff Directory by SwiftCloud Code Analysis

Dangerous Functions
2
Raw SQL Queries
0
8 prepared
Unescaped Output
139
57 escaped
Nonce Checks
6
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Dangerous Functions Found

unserialize$fData = @unserialize($fLogDetail->form_data);admin/section/swift-staff-local-capture.php:182
unserialize$fData = @unserialize($fLog[0]->form_data);public/section/swift-staff-function.php:117

SQL Query Safety

100% prepared8 total queries

Output Escaping

29% escaped196 total outputs
Data Flows · Security
6 unsanitized

Data Flow Analysis

9 flows6 with unsanitized paths
swift_staff_dashboard_cb (admin/section/swift-staff-dashboard.php:7)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
4 unprotected

Job Applicant Tracking & Staff Directory by SwiftCloud Attack Surface

Entry Points6
Unprotected4

AJAX Handlers 4

authwp_ajax_swift_staff_dismiss_noticeadmin/swift-staff-admin.php:141
noprivwp_ajax_swift_staff_dismiss_noticeadmin/swift-staff-admin.php:142
authwp_ajax_swift_staff_save_local_capturepublic/section/swift-staff-function.php:105
noprivwp_ajax_swift_staff_save_local_capturepublic/section/swift-staff-function.php:106

Shortcodes 2

[swiftstaff_jobs] public/section/swift-staff-shortcode.php:11
[swift_staff_list] public/section/swift-staff-shortcode.php:88
WordPress Hooks 29
actioninitadmin/section/cpt-swift-jobs.php:6
filterregister_post_type_argsadmin/section/cpt-swift-jobs.php:299
filterregister_post_type_argsadmin/section/cpt-swift-jobs.php:309
actionadd_meta_boxesadmin/section/cpt-swift-jobs.php:315
actionsave_postadmin/section/cpt-swift-jobs.php:401
filtersingle_templateadmin/section/cpt-swift-jobs.php:429
filterarchive_templateadmin/section/cpt-swift-jobs.php:444
actionpre_get_postsadmin/section/cpt-swift-jobs.php:472
actioninitadmin/section/swift-staff-settings.php:5
actionwidgets_initadmin/section/swift-staff-widget-current-opening-jobs.php:121
actionwidgets_initadmin/section/swift-staff-widget-latest-jobs.php:121
actionwidgets_initadmin/section/swift-staff-widget-search.php:82
actionadmin_noticesadmin/swift-staff-admin.php:7
actionadmin_menuadmin/swift-staff-admin.php:37
filterparent_fileadmin/swift-staff-admin.php:68
actionadmin_enqueue_scriptsadmin/swift-staff-admin.php:93
actioninitadmin/swift-staff-admin.php:128
actionswift_staff_api_postpublic/section/swift-staff-function.php:109
filterpage_attributes_dropdown_pages_argsswift-staff-pagetemplater.php:39
filtertheme_page_templatesswift-staff-pagetemplater.php:43
filterwp_insert_post_dataswift-staff-pagetemplater.php:50
filtertemplate_includeswift-staff-pagetemplater.php:57
actionplugins_loadedswift-staff-pagetemplater.php:144
actionadmin_noticesswift-staff.php:30
actionadmin_initswift-staff.php:36
actionwp_loadedswift-staff.php:62
actionwp_enqueue_scriptsswift-staff.php:135
actionwidgets_initswift-staff.php:148
filterrequestswift-staff.php:175

Scheduled Events 1

swift_staff_api_post
Maintenance & Trust

Job Applicant Tracking & Staff Directory by SwiftCloud Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedJul 12, 2021
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Job Applicant Tracking & Staff Directory by SwiftCloud Developer Profile

SwiftCloud

2 plugins · 110 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Job Applicant Tracking & Staff Directory by SwiftCloud

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/applicant-tracking-system/public/css/swift-staff-style.css/wp-content/plugins/applicant-tracking-system/public/css/font-awesome.min.css/wp-content/plugins/applicant-tracking-system/admin/css/swift-dashboard.css/wp-content/plugins/applicant-tracking-system/admin/js/swift-dashboard.js/wp-content/plugins/applicant-tracking-system/admin/js/jstz.min.js

HTML / DOM Fingerprints

CSS Classes
swift-staff-customswiftcloud-fontawesomeswift-staff-widget-innerswift-staff-widget-titledashboard-wrapdashboard-titledashboard-subscribe-toggleswift_dashboard_subscribe+4 more
HTML Comments
plugin load Deactive plugin Uninstall plugin Enqueue scripts and styles. +2 more
Data Attributes
swift-staff-sidebarswift_staff_versionswift_staff_noticeswift_staff_pre_load_pagesswift_jobsswift_staffs+12 more
JS Globals
SWIFTSTAFF_VERSIONSWIFTSTAFF_MINIMUM_WP_VERSIONSWIFTSTAFF_PLUGIN_URLSWIFTSTAFF_PLUGIN_DIRSWIFTSTAFF_PLUGIN_PREFIX
FAQ

Frequently Asked Questions about Job Applicant Tracking & Staff Directory by SwiftCloud