Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Security & Risk Analysis

wordpress.org/plugins/chainium

Blockchain Integrations, Web3, Crypto, Wallet, Authenticator, Login, NFT Marketplace, Explorer, MetaMask, Trust Wallet, Ethereum, Solana, Tron

30 active installs v1.0.1 PHP 8.1+ WP 5.0+ Updated Nov 13, 2024
authenticatorblockchainmetamaskwalletweb3
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Safe to Use in 2026?

Generally Safe

Score 92/100

Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'chainium' plugin v1.0.1 exhibits a generally positive security posture, with no known critical vulnerabilities and a good adherence to secure coding practices in several areas. The absence of known CVEs and a lack of identified critical or high-severity taint flows are significant strengths. Furthermore, the plugin utilizes prepared statements for a majority of its SQL queries and properly escapes a substantial portion of its output, indicating developer awareness of common web security pitfalls.

However, there are notable concerns that temper this positive assessment. The complete absence of nonce checks and capability checks across all entry points (shortcodes) is a significant security weakness. This means that any authenticated user, regardless of their role or permissions, could potentially trigger the functionality of these shortcodes, leading to unintended actions or information disclosure. The presence of external HTTP requests without clear sanitization or validation mechanisms also introduces a potential risk of SSRF or other vulnerabilities if the target URL is not properly controlled.

In conclusion, while 'chainium' v1.0.1 demonstrates strengths in its handling of SQL and output escaping, the lack of robust authorization and noncing on its shortcodes presents a critical security gap. The external HTTP request also warrants careful review. Addressing these specific areas would significantly improve the plugin's overall security.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
  • External HTTP request without clear validation
  • SQL queries without prepared statements
  • Output not properly escaped
Vulnerabilities
None known

Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
13 prepared
Unescaped Output
9
24 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

81% prepared16 total queries

Output Escaping

73% escaped33 total outputs
Attack Surface

Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[beycanpress-chainium-init] app\Services\LoginRegister.php:27
[beycanpress-chainium-matching] app\Services\Matching.php:17
WordPress Hooks 12
filterlogout_urlapp\Loader.php:23
actionwp_logoutapp\Loader.php:31
actiondeleted_userapp\Loader.php:62
actionadmin_noticesapp\Loader.php:71
actioninitapp\Loader.php:81
actionadmin_menuapp\OtherPlugins.php:22
actionadmin_menuapp\Pages\UserList.php:21
actionrest_api_initapp\RestAPI.php:27
actionlogin_formapp\Services\LoginRegister.php:18
actionwoocommerce_login_formapp\Services\LoginRegister.php:22
actioninitapp\Services\LoginRegister.php:25
actioninitapp\Services\Matching.php:15
Maintenance & Trust

Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 13, 2024
PHP min version8.1
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator Developer Profile

BeycanPress LLC

16 plugins · 260 total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
85 days
View full developer profile
Detection Fingerprints

How We Detect Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/chainium/assets/css/main.css/wp-content/plugins/chainium/assets/js/reown.js/wp-content/plugins/chainium/assets/js/sweetalert2.js/wp-content/plugins/chainium/assets/js/main.js/wp-content/plugins/chainium/assets/images/beycanpress.png
Script Paths
/wp-content/plugins/chainium/assets/js/reown.js/wp-content/plugins/chainium/assets/js/sweetalert2.js/wp-content/plugins/chainium/assets/js/main.js
Version Parameters
chainium/assets/css/main.css?ver=chainium/assets/js/reown.js?ver=chainium/assets/js/sweetalert2.js?ver=chainium/assets/js/main.js?ver=

HTML / DOM Fingerprints

CSS Classes
beycanpress-chainium-mainwrapperboxbox-33postboxactivity-blockproduct-list
Data Attributes
data-chainium-target
JS Globals
Chainium
REST Endpoints
/wp-json/chainium-api/login/wp-json/chainium-api/register/wp-json/chainium-api/get-sign-message/wp-json/chainium-api/matching-control/wp-json/chainium-api/remove-matching/wp-json/chainium-api/address-match/wp-json/chainium-api/address-change
FAQ

Frequently Asked Questions about Chainium – Blockchain Integrations & Web3 Crypto Wallet Authenticator