Bulk SMS – SMSNET24 Security & Risk Analysis

wordpress.org/plugins/bulk-sms-smsnet24

SMSNET24.Com is a BULK SMS Service of DigitalLab. Bulk SMS is widely used in Bank, School,College, Universiy, Govt., Non Govt organization world wide.

0 active installs v1.0 PHP 5.2.4+ WP 5.0+ Updated Nov 2, 2022
bulk-smsdokan-smssms-rest-apiwoocommerce-smswp-sms
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Bulk SMS – SMSNET24 Safe to Use in 2026?

Generally Safe

Score 85/100

Bulk SMS – SMSNET24 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The plugin 'bulk-sms-smsnet24' v1.0 demonstrates a generally strong security posture based on the static analysis. The absence of any identified critical or high-severity taint flows, coupled with a high percentage of SQL queries using prepared statements and properly escaped output, suggests good coding practices for preventing common web vulnerabilities. Furthermore, the plugin has no recorded history of vulnerabilities, indicating a potentially stable and secure development lifecycle. The attack surface is zero, with no AJAX handlers, REST API routes, shortcodes, or cron events, which significantly reduces the potential entry points for attackers. The presence of a nonce check, though only one, is a positive sign for protecting against CSRF attacks. However, the complete lack of capability checks is a significant concern. While the attack surface is currently zero, any future addition of functionality that interacts with sensitive data or actions would be unprotected against unauthorized access if proper capability checks are not implemented. The limited number of SQL queries and outputs analyzed might also mean that some less common but still impactful vulnerabilities could be present but not detected by this snapshot of the code.

Key Concerns

  • No capability checks found
  • Low number of analyzed taint flows
  • Limited scope of SQL query analysis
Vulnerabilities
None known

Bulk SMS – SMSNET24 Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Bulk SMS – SMSNET24 Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
10 prepared
Unescaped Output
6
28 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

83% prepared12 total queries

Output Escaping

82% escaped34 total outputs
Attack Surface

Bulk SMS – SMSNET24 Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionplugins_loadedbulk-sms-smsnet24.php:39
actionadmin_menuincludes\Admin\Menu.php:21
actionadmin_initincludes\Admin.php:28
actionrest_api_initincludes\API.php:13
actionwp_enqueue_scriptsincludes\Assets.php:14
actionadmin_enqueue_scriptsincludes\Assets.php:15
Maintenance & Trust

Bulk SMS – SMSNET24 Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedNov 2, 2022
PHP min version5.2.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Bulk SMS – SMSNET24 Developer Profile

digitallabbd

1 plugin · 0 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Bulk SMS – SMSNET24

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/bulk-sms-smsnet24/assets/js/frontend.js/wp-content/plugins/bulk-sms-smsnet24/assets/css/frontend.css/wp-content/plugins/bulk-sms-smsnet24/assets/css/admin.css
Script Paths
/wp-content/plugins/bulk-sms-smsnet24/assets/js/frontend.js
Version Parameters
bulk-sms-smsnet24/assets/js/frontend.js?ver=bulk-sms-smsnet24/assets/css/frontend.css?ver=bulk-sms-smsnet24/assets/css/admin.css?ver=

HTML / DOM Fingerprints

REST Endpoints
/wp-json/smsnet/v1/otp/create/wp-json/smsnet/v1/otp/check-otp
FAQ

Frequently Asked Questions about Bulk SMS – SMSNET24