Breadcrumb based on URL Security & Risk Analysis

wordpress.org/plugins/bread-crumb-matching-any-theme-skin

This Breadcrumb will show the permalink url, also clickable all part

300 active installs v2.0 PHP 7.4+ WP 5.5+ Updated Dec 6, 2025
bread-crumbbreadcrumbbreadcrumb-trailurl-breadcrumburl-navigation
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Breadcrumb based on URL Safe to Use in 2026?

Generally Safe

Score 100/100

Breadcrumb based on URL has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin 'bread-crumb-matching-any-theme-skin' v2.0 exhibits a generally strong security posture due to the absence of critical code signals like dangerous functions, raw SQL queries, file operations, and external HTTP requests. The complete lack of known vulnerabilities, both historical and recent, further contributes to its positive security profile, suggesting a mature and well-maintained codebase. However, the analysis reveals potential weaknesses that warrant attention. The presence of a shortcode, while not inherently risky, represents an entry point that could be exploited if not properly secured. More concerning is the fact that none of the identified entry points have explicit authentication or capability checks. Additionally, only 50% of output escaping is properly implemented, leaving room for Cross-Site Scripting (XSS) vulnerabilities. The absence of taint analysis results is also noteworthy; while it indicates no identified taint flows, it's important to recognize that this might be due to the limited complexity of the plugin or the scope of the analysis, rather than a definitive absence of potential issues.

Key Concerns

  • No explicit auth/capability checks on entry points
  • Half of output escaping is not proper
  • Shortcode as an unprotected entry point
Vulnerabilities
None known

Breadcrumb based on URL Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Breadcrumb based on URL Release Timeline

v2.0Current
Code Analysis
Analyzed Mar 16, 2026

Breadcrumb based on URL Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

50% escaped2 total outputs
Attack Surface

Breadcrumb based on URL Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[breadcrumb_tawhidurrahmandear_widget] bread-crumb-matching-any-theme-skin.php:117
WordPress Hooks 2
filterplugin_row_metabread-crumb-matching-any-theme-skin.php:35
actionwidgets_initbread-crumb-matching-any-theme-skin.php:107
Maintenance & Trust

Breadcrumb based on URL Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 6, 2025
PHP min version7.4
Downloads13K

Community Trust

Rating100/100
Number of ratings2
Active installs300
Developer Profile

Breadcrumb based on URL Developer Profile

Dear

17 plugins · 2K total installs

93
trust score
Avg Security Score
99/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Breadcrumb based on URL

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
breadcrumbtawhidurrahmandear
JS Globals
var path =var href =var s =
Shortcode Output
[breadcrumb_tawhidurrahmandear_widget]
FAQ

Frequently Asked Questions about Breadcrumb based on URL