
Binary MLM Plan Security & Risk Analysis
wordpress.org/plugins/binary-mlm-planBinary MLM is a network marketing model with ePins, where each member recruits two downlines, earning commissions based on referrals.
Is Binary MLM Plan Safe to Use in 2026?
Mostly Safe
Score 71/100Binary MLM Plan is generally safe to use. 3 past CVEs were resolved. Keep it updated.
The "binary-mlm-plan" plugin v5.1 exhibits a mixed security posture. While it demonstrates good practices in SQL query sanitization (96% prepared statements) and output escaping (82%), significant concerns arise from its attack surface and taint analysis. A large portion of its AJAX handlers (14 out of 14) are exposed without authentication checks, presenting a substantial risk for unauthorized actions. The taint analysis reveals 11 high-severity flows with unsanitized paths, indicating potential vulnerabilities that could be exploited if user input is not properly validated before being used in sensitive operations. The plugin's vulnerability history, including one currently unpatched high-severity CVE and past issues like SQL injection and authorization bypass, further exacerbates these concerns. This history suggests a recurring pattern of security flaws that have not been fully remediated. The plugin's strengths lie in its careful handling of SQL queries and output, but the numerous unprotected entry points and critical taint flows, coupled with a history of vulnerabilities, paint a picture of a plugin that requires immediate attention to address its significant security weaknesses.
Key Concerns
- Unprotected AJAX handlers
- High severity taint flows
- Unpatched high severity CVE
- Bundled outdated library
- Low capability check coverage
Binary MLM Plan Security Vulnerabilities
CVEs by Year
Severity Breakdown
3 total CVEs
Binary MLM Plan <= 5.0 - Authenticated (Subscriber+) Insecure Direct Object Reference
Binary MLM Plan <= 3.0 - Unauthenticated Limited Privilege Escalation
Binary MLM Plan <= 3.0 - Unauthenticated SQL Injection
Binary MLM Plan Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Binary MLM Plan Attack Surface
AJAX Handlers 14
Shortcodes 4
WordPress Hooks 24
Maintenance & Trust
Binary MLM Plan Maintenance & Trust
Maintenance Signals
Community Trust
Binary MLM Plan Alternatives
Binary MLM Plan Developer Profile
5 plugins · 80 total installs
How We Detect Binary MLM Plan
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/binary-mlm-plan/assets/css/admin/admin.css/wp-content/plugins/binary-mlm-plan/assets/css/bootstrap.css/wp-content/plugins/binary-mlm-plan/assets/fontawesome/css/all.min.css/wp-content/plugins/binary-mlm-plan/assets/js/admin/admin.js/wp-content/plugins/binary-mlm-plan/assets/js/bootstrap.js/wp-content/plugins/binary-mlm-plan/assets/fontawesome/js/all.min.js/wp-content/plugins/binary-mlm-plan/assets/datatable/datatables.css/wp-content/plugins/binary-mlm-plan/assets/datatable/datatables.js+4 more/wp-content/plugins/binary-mlm-plan/assets/js/admin/admin.js/wp-content/plugins/binary-mlm-plan/assets/js/bootstrap.js/wp-content/plugins/binary-mlm-plan/assets/fontawesome/js/all.min.js/wp-content/plugins/binary-mlm-plan/assets/datatable/datatables.js/wp-content/plugins/binary-mlm-plan/assets/js/dataTable.js/wp-content/plugins/binary-mlm-plan/assets/js/genealogy/genealogy_boot.js+1 moreHTML / DOM Fingerprints
bmp_admin_stylesbmp_admin_bootstrapbmp_fs_cssbmp_dataTable_cssbmp_dataTable_jsbmp_dataTablebmp_admin_gene_cssbmp-genboot-js+1 more<!-- INSERT INTO PAYOUT TABLE --><!-- BMP PRO Add new members --><!-- BMP PRO Genealogy Tree -->data-bs-toggledata-bs-targetdata-bs-dismissdata-bs-backdropdata-bs-keyboardgenealogy_data