Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Security & Risk Analysis

wordpress.org/plugins/awesome-dokan

Modernize your Dokan vendor dashboard — with more awesome customizations coming soon!

20 active installs v1.1.1 PHP 7.2+ WP 5.2+ Updated Mar 4, 2026
dashboarddokanredesignvendor-dashboardwoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Safe to Use in 2026?

Generally Safe

Score 100/100

Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "awesome-dokan" v1.1.1 plugin appears to have a generally good security posture. The plugin demonstrates strong adherence to several security best practices, including the absence of dangerous functions, all SQL queries utilizing prepared statements, and the presence of both nonce and capability checks for its single AJAX handler.

The static analysis reveals a limited attack surface, with no REST API routes, shortcodes, or cron events. Furthermore, there are no indications of taint analysis findings, suggesting no detectable unsanitized data flows, and no file operations or external HTTP requests are present. The primary area for potential concern is the output escaping, which is only properly implemented on 75% of outputs. While not a critical vulnerability on its own, this could potentially lead to cross-site scripting (XSS) issues if sensitive data is not properly escaped in the remaining 25% of outputs.

The plugin's vulnerability history is exceptionally clean, with zero recorded CVEs, indicating a strong track record of security. This, combined with the good practices observed in the code analysis, suggests a mature and well-maintained plugin. However, the imperfect output escaping warrants a minor deduction to reflect the potential for low-severity XSS vulnerabilities. Overall, the plugin presents a low-risk profile.

Key Concerns

  • Improper output escaping on 25% of outputs
Vulnerabilities
None known

Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
27
82 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

75% escaped109 total outputs
Attack Surface

Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_awesome_dokan_save_fullscreen_modeincludes\functions.php:60
WordPress Hooks 14
actionplugins_loadedawesome-dokan.php:40
actionwp_enqueue_scriptsawesome-dokan.php:96
actionadmin_menuincludes\class-awesome-dokan-settings.php:41
actionadmin_initincludes\class-awesome-dokan-settings.php:42
actionadmin_enqueue_scriptsincludes\class-awesome-dokan-settings.php:43
actionadmin_initincludes\functions.php:10
filterawesome_dokan_fullscreenincludes\functions.php:22
actiondokan_dashboard_content_beforeincludes\functions.php:39
filterdokan_load_hamburger_menutemplates\dashboard.php:8
actiondokan_dashboard_sidebar_starttemplates\dashboard.php:170
actiondokan_dashboard_sidebar_endtemplates\dashboard.php:182
actiondokan_dashboard_wrap_starttemplates\dashboard.php:191
actiondokan_dashboard_wrap_endtemplates\dashboard.php:217
actionawesome_dokan_before_wrappertemplates\dashboard.php:228
Maintenance & Trust

Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 4, 2026
PHP min version7.2
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience Developer Profile

atPlugins

9 plugins · 550 total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/awesome-dokan/assets/css/dashboard.css/wp-content/plugins/awesome-dokan/assets/js/dashboard.js/wp-content/plugins/awesome-dokan/assets/js/admin.js/wp-content/plugins/awesome-dokan/assets/css/admin.css
Version Parameters
awesome-dokan/assets/css/dashboard.css?ver=awesome-dokan/assets/js/dashboard.js?ver=awesome-dokan/assets/js/admin.js?ver=awesome-dokan/assets/css/admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
awesome-dokan-settings
Data Attributes
data-nonce="awesome_dokan_nonce"
JS Globals
awesome_dokan_obj
FAQ

Frequently Asked Questions about Awesome Dokan: Ultimate Dokan Vendor Dashboard Experience