Verified Member for BuddyPress Security & Risk Analysis

wordpress.org/plugins/bp-verified-member

Verify your BuddyPress members and display a twitter-like verified badge on the front-end.

4K active installs v1.2.8 PHP 5.6+ WP 5.4+ Updated May 19, 2025
badgebpcommunitymemberverify
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Verified Member for BuddyPress Safe to Use in 2026?

Generally Safe

Score 100/100

Verified Member for BuddyPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10mo ago
Risk Assessment

The 'bp-verified-member' plugin v1.2.8 exhibits a mixed security posture. On the positive side, the plugin demonstrates good security practices by exclusively using prepared statements for SQL queries and performing output escaping on nearly all outputs. The absence of dangerous functions, file operations, external HTTP requests, and known vulnerabilities in its history are also strong indicators of a generally secure codebase. However, a significant concern arises from the substantial attack surface exposed through its AJAX handlers. Out of eight AJAX entry points, five lack authentication checks, creating a potential pathway for unauthorized actions if these handlers are exploitable. While taint analysis showed no critical or high severity flows, the presence of unprotected AJAX endpoints represents a notable risk that could be leveraged by attackers.

Key Concerns

  • Unprotected AJAX handlers
  • Limited nonce checks
  • Limited capability checks
Vulnerabilities
None known

Verified Member for BuddyPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Verified Member for BuddyPress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
118 escaped
Nonce Checks
3
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped119 total outputs
Attack Surface
5 unprotected

Verified Member for BuddyPress Attack Surface

Entry Points8
Unprotected5

AJAX Handlers 8

authwp_ajax_bp_verified_member_toggleadmin\class-bp-verified-member-admin.php:50
authwp_ajax_bp_verified_member_dismiss_new_requests_noticeadmin\class-bp-verified-member-admin.php:63
authwp_ajax_widget_membersinc\class-bp-verified-member.php:66
noprivwp_ajax_widget_membersinc\class-bp-verified-member.php:67
authwp_ajax_widget_membersinc\class-bp-verified-member.php:68
noprivwp_ajax_widget_membersinc\class-bp-verified-member.php:69
authwp_ajax_bp_verified_member_requestinc\class-bp-verified-member.php:110
noprivwp_ajax_bp_verified_member_requestinc\class-bp-verified-member.php:111
WordPress Hooks 67
actionadmin_enqueue_scriptsadmin\class-bp-verified-member-admin.php:43
filtermanage_users_columnsadmin\class-bp-verified-member-admin.php:48
filtermanage_users_custom_columnadmin\class-bp-verified-member-admin.php:49
filterbulk_actions-usersadmin\class-bp-verified-member-admin.php:55
filterhandle_bulk_actions-usersadmin\class-bp-verified-member-admin.php:56
actionadmin_noticesadmin\class-bp-verified-member-admin.php:57
actionadmin_noticesadmin\class-bp-verified-member-admin.php:62
filterviews_usersadmin\class-bp-verified-member-admin.php:64
actionusers_list_table_query_argsadmin\class-bp-verified-member-admin.php:65
actionupdate_user_metaadmin\class-bp-verified-member-admin.php:70
actionset_user_roleadmin\class-bp-verified-member-admin.php:71
actionset_object_termsadmin\class-bp-verified-member-admin.php:72
actionbp_members_admin_user_metaboxesadmin\meta-box\class-bp-verified-member-meta-box.php:34
actionbp_members_admin_update_useradmin\meta-box\class-bp-verified-member-meta-box.php:35
actionadmin_menuadmin\settings\class-bp-verified-member-settings.php:48
actionadmin_initadmin\settings\class-bp-verified-member-settings.php:49
filterbp_core_get_admin_tabsadmin\settings\class-bp-verified-member-settings.php:52
filterbp_core_get_admin_settings_tabsadmin\settings\class-bp-verified-member-settings.php:53
actionbp_admin_headadmin\settings\class-bp-verified-member-settings.php:54
actioninitadmin\settings\class-bp-verified-member-settings.php:57
actionbp_admin_submenu_pagesadmin\settings\class-bp-verified-member-settings.php:106
actionadmin_noticesbp-verified-member.php:48
actionbp_includebp-verified-member.php:65
actioninitinc\class-bp-verified-member.php:26
filterwp_enqueue_scriptsinc\class-bp-verified-member.php:32
filterbp_get_displayed_user_mentionnameinc\class-bp-verified-member.php:37
filterbp_get_displayed_user_usernameinc\class-bp-verified-member.php:38
filterbp_displayed_user_fullnameinc\class-bp-verified-member.php:39
filterbp_core_get_user_displaynameinc\class-bp-verified-member.php:40
filterbp_get_activity_actioninc\class-bp-verified-member.php:45
filterbp_activity_comment_nameinc\class-bp-verified-member.php:46
filterbp_nouveau_get_activity_comment_actioninc\class-bp-verified-member.php:47
filterbp_get_group_member_linkinc\class-bp-verified-member.php:52
filterbp_get_group_invite_user_linkinc\class-bp-verified-member.php:53
actionbp_before_member_friend_requests_contentinc\class-bp-verified-member.php:54
actionbp_after_member_friend_requests_contentinc\class-bp-verified-member.php:55
filterthe_contentinc\class-bp-verified-member.php:56
filterthe_contentinc\class-bp-verified-member.php:57
filterbp_get_member_classinc\class-bp-verified-member.php:58
filteraa_user_name_templateinc\class-bp-verified-member.php:59
actiondynamic_sidebar_beforeinc\class-bp-verified-member.php:64
actiondynamic_sidebar_afterinc\class-bp-verified-member.php:65
filterbp_core_get_userlinkinc\class-bp-verified-member.php:74
filterbp_get_the_thread_message_sender_nameinc\class-bp-verified-member.php:75
filterget_comment_authorinc\class-bp-verified-member.php:80
filterthe_authorinc\class-bp-verified-member.php:81
filterget_the_author_display_nameinc\class-bp-verified-member.php:82
filterbbp_get_topic_author_linksinc\class-bp-verified-member.php:87
filterbbp_get_reply_author_linksinc\class-bp-verified-member.php:88
filterbbp_get_author_linksinc\class-bp-verified-member.php:89
filterbp_core_get_user_displaynameinc\class-bp-verified-member.php:94
filterbp_get_send_public_message_linkinc\class-bp-verified-member.php:99
filterwidget_titleinc\class-bp-verified-member.php:100
actionwpinc\class-bp-verified-member.php:101
filterbp_notifications_get_notifications_for_userinc\class-bp-verified-member.php:102
filtercomment_reply_linkinc\class-bp-verified-member.php:103
actionbp_profile_header_metainc\class-bp-verified-member.php:108
actionbp_before_member_in_header_metainc\class-bp-verified-member.php:109
actionbp_core_install_emailsinc\class-bp-verified-member.php:112
filterbps_add_fieldsinc\class-bp-verified-member.php:117
filterbp_notifications_get_registered_componentsinc\class-bp-verified-member.php:122
actionbp_verified_member_verified_status_updatedinc\class-bp-verified-member.php:123
filterbp_notifications_get_notifications_for_userinc\class-bp-verified-member.php:124
filterbp_member_nameinc\class-bp-verified-member.php:460
filterbp_member_nameinc\class-bp-verified-member.php:482
filterbp_member_nameinc\class-bp-verified-member.php:586
filterbp_member_avatarinc\class-bp-verified-member.php:587
Maintenance & Trust

Verified Member for BuddyPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 19, 2025
PHP min version5.6
Downloads122K

Community Trust

Rating94/100
Number of ratings15
Active installs4K
Developer Profile

Verified Member for BuddyPress Developer Profile

Themosaurus

3 plugins · 5K total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Verified Member for BuddyPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bp-verified-member/assets/js/admin.js/wp-content/plugins/bp-verified-member/assets/css/frontend.css
Script Paths
/wp-content/plugins/bp-verified-member/assets/js/admin.js/wp-content/plugins/bp-verified-member/assets/js/frontend.js
Version Parameters
bp-verified-member/style.css?ver=bp-verified-member/script.js?ver=bp-verified-member/assets/js/admin.js?ver=bp-verified-member/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
bp-verified-member-togglebp-verified-by-rolebp-verified-by-member-typebp-verified-member-badgebp-verified-member-profile-verified
Data Attributes
data-user-iddata-bp-verified-member-toggle-nonce
JS Globals
bpVerifiedMemberAdmin
Shortcode Output
[bp_verified_member_badge]
FAQ

Frequently Asked Questions about Verified Member for BuddyPress