
bbP Follow Users Security & Risk Analysis
wordpress.org/plugins/bbp-follow-usersThis simple plugin allows users to follow other members on bbPress . The users can view the latest posts and replies from their followed users in a wi …
Is bbP Follow Users Safe to Use in 2026?
Generally Safe
Score 85/100bbP Follow Users has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "bbp-follow-users" v1.1 plugin exhibits a generally good security posture, with no recorded vulnerabilities or critical issues found in taint analysis. The plugin makes effective use of prepared statements for all SQL queries, which significantly mitigates the risk of SQL injection. It also implements nonce checks for its entry points and avoids file operations and external HTTP requests, further reducing its attack surface. However, there are some areas for improvement. The use of the `create_function` function is a significant concern, as it can be a vector for code execution if not handled with extreme care. Additionally, only 32% of output escaping is properly implemented, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is displayed without sufficient sanitization. The lack of capability checks on its entry points is also a weakness, as it means any authenticated user could potentially trigger these actions without proper authorization.
Key Concerns
- Use of dangerous function (create_function)
- Low percentage of properly escaped output
- No capability checks on entry points
bbP Follow Users Security Vulnerabilities
bbP Follow Users Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
bbP Follow Users Attack Surface
AJAX Handlers 2
WordPress Hooks 3
Maintenance & Trust
bbP Follow Users Maintenance & Trust
Maintenance Signals
Community Trust
bbP Follow Users Alternatives
BuddyPress Follow
buddypress-followers
Follow members on your BuddyPress site with this nifty plugin.
BuddyPress FollowMe
buddypress-follow-me
Buddypress Follow Me is fork of BuddyPress Follow plugin (http://wordpress.org/extend/plugins/buddypress-followers/). buddypress-followers is now upda …
One User Avatar | User Profile Picture
one-user-avatar
Use any image from your WordPress Media Library as a custom user avatar or user profile picture. Add your own Default Avatar.
Content Aware Sidebars – Fastest Widget Area Plugin
content-aware-sidebars
Display new sidebars on any post, page, category etc. Works with Classic Widgets, Block Widgets, and all themes!
wpForo Forum
wpforo
Number one WordPress forum plugin. Full-fledged forum solution with modern and responsive forum design. Community builder WordPress forum plugin.
bbP Follow Users Developer Profile
1 plugin · 10 total installs
How We Detect bbP Follow Users
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/bbp-follow-users/js/follow.js/wp-content/plugins/bbp-follow-users/js/follow.jsbbp-follow-users/js/follow.js?ver=HTML / DOM Fingerprints
follow-linkfollowunfollowdata-user-iddata-follow-idbbpresslist_js