
Attendance Manager Security & Risk Analysis
wordpress.org/plugins/attendance-managerEach user can do attendance management by themselves. 管理者のほか、ユーザー自身も編集可能な出勤管理プラグイン。
Is Attendance Manager Safe to Use in 2026?
Mostly Safe
Score 73/100Attendance Manager is generally safe to use. 3 past CVEs were resolved. Keep it updated.
The 'attendance-manager' plugin version 0.6.2 presents a mixed security posture. While the static analysis indicates a generally small attack surface with no apparent unauthenticated entry points, several areas raise concerns. The output escaping is notably weak, with only 53% of outputs being properly escaped, increasing the risk of Cross-Site Scripting (XSS) vulnerabilities, especially if user-supplied data is involved in these unescaped outputs. The vulnerability history is a significant red flag, with three known CVEs, including one high-severity and two medium-severity vulnerabilities. The fact that one high-severity vulnerability remains unpatched is a critical issue.
Key Concerns
- Unpatched High Severity CVE
- Medium Severity CVEs (2)
- Low percentage of properly escaped output
- Low percentage of prepared statements
Attendance Manager Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Attendance Manager <= 0.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
Attendance Manager <= 0.5.6 - Cross-site Request Forgery
Attendance Manager <= 0.5.6 - Stored Cross-Site Scripting
Attendance Manager Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Attendance Manager Attack Surface
WordPress Hooks 36
Maintenance & Trust
Attendance Manager Maintenance & Trust
Maintenance Signals
Community Trust
Attendance Manager Alternatives
Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories
post-expirator
PublishPress Future can make scheduled changes to your content. You can unpublish posts, move posts to a new status, update the categories, and more.
School Management System – WPSchoolPress
wpschoolpress
An extensive plugin for school management with features like attendance, class management, time table, exams, grades, student-teacher-parent notificat …
Clock In Portal- Staff & Attendance Management
clock-in-portal
Track the attendance of all registered employees with clock in or out system
Conference Scheduler
conference-scheduler
Easily manage and display complex workshop schedules for conferences, and share workshop details in a clean, searchable, responsive interface.
Hr Press Lite
hr-press-lite
Hr Press Lite is a modern Employee Management System to track attendance, breaks, and manage employees efficiently. HRM (Human Resource Management) is …
Attendance Manager Developer Profile
3 plugins · 2K total installs
How We Detect Attendance Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/attendance-manager/admin.cssattendance-manager/admin.css?ver=HTML / DOM Fingerprints
attmgrname="attmgr_options[starttime]"name="attmgr_options[endtime]"name="attmgr_options[interval]"name="attmgr_options[format_year_month]"name="attmgr_options[format_month_day]"name="attmgr_options[format_time]"