atec web-map-service Security & Risk Analysis

wordpress.org/plugins/atec-web-map-service

The atecmap.com web map can be incorporated into any page. The map comes with a customizable location icon and is fully GDPR conform.

20 active installs v1.7.29 PHP 7.4+ WP 4.9+ Updated Jan 8, 2026
fully-gdpr-conformincorporated-the-atecmap-com-web-map-into-any-page
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is atec web-map-service Safe to Use in 2026?

Generally Safe

Score 100/100

atec web-map-service has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The 'atec-web-map-service' v1.7.29 plugin exhibits a generally good security posture with some notable areas of concern. The plugin demonstrates strong adherence to secure coding practices by exclusively using prepared statements for SQL queries and properly escaping a high percentage of its output. The absence of known vulnerabilities in its history and the limited scope of taint analysis further contribute to a positive impression. However, the presence of an unprotected AJAX handler represents a significant potential entry point for attackers. While the plugin implements a reasonable number of nonce and capability checks, the lack of authentication on one of its entry points is a critical oversight that could lead to unauthorized actions or information disclosure if that handler performs sensitive operations.

Despite the plugin's strengths in areas like SQL handling and output sanitization, the single unprotected AJAX endpoint is a clear risk. The vulnerability history shows no past issues, which is excellent, but this does not negate the immediate risk presented by the current code. Future analysis should focus on understanding the functionality of this unprotected handler to fully assess the potential impact. In conclusion, while the plugin is built on a solid foundation of secure coding, this specific omission needs immediate attention to mitigate potential security threats.

Key Concerns

  • Unprotected AJAX handler
Vulnerabilities
None known

atec web-map-service Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

atec web-map-service Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
315 escaped
Nonce Checks
2
Capability Checks
5
File Operations
14
External Requests
1
Bundled Libraries
0

Output Escaping

97% escaped326 total outputs
Attack Surface
1 unprotected

atec web-map-service Attack Surface

Entry Points2
Unprotected1

AJAX Handlers 1

authwp_ajax_atec_admin_notice_dismissincludes\ATEC\LOADER.php:109

Shortcodes 1

[atec_wpwms_shortcode] atec-web-map-service.php:43
WordPress Hooks 6
actionadmin_menuatec-web-map-service.php:31
actionadmin_initatec-web-map-service.php:33
actionadmin_enqueue_scriptsincludes\ATEC\INIT.php:564
actionadmin_noticesincludes\ATEC\INIT.php:647
actionadmin_footerincludes\ATEC\INIT.php:688
actionadmin_noticesincludes\ATEC\INIT.php:720
Maintenance & Trust

atec web-map-service Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 8, 2026
PHP min version7.4
Downloads4K

Community Trust

Rating100/100
Number of ratings2
Active installs20
Alternatives

atec web-map-service Alternatives

No alternatives data available yet.

Developer Profile

atec web-map-service Developer Profile

docjojo

16 plugins · 3K total installs

99
trust score
Avg Security Score
99/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect atec web-map-service

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/atec-web-map-service/assets/js/atec.js/wp-content/plugins/atec-web-map-service/assets/css/atec.css
Script Paths
/wp-content/plugins/atec-web-map-service/assets/js/atec.js
Version Parameters
atec-web-map-service/assets/js/atec.js?ver=atec-web-map-service/assets/css/atec.css?ver=

HTML / DOM Fingerprints

Data Attributes
data-atec-wpwms-widthdata-atec-wpwms-heightdata-atec-wpwms-keydata-atec-wpwms-monodata-atec-wpwms-latdata-atec-wpwms-lng
JS Globals
atec_wpwms_ajax_cb
REST Endpoints
/wp-json/atec-web-map-service/v1/settings
Shortcode Output
<iframe style="display: block; border:none; width:; height:" src="https://atecmap.com?apikey=&mono=
FAQ

Frequently Asked Questions about atec web-map-service