Closemarketing Custom Admin Security & Risk Analysis

wordpress.org/plugins/closemarketing-custom-admin

Custom admin enhacements for Closemarketing Webs in WordPress.

100 active installs v1.12.1 PHP + WP 5.0+ Updated May 28, 2025
custom-admin
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Closemarketing Custom Admin Safe to Use in 2026?

Generally Safe

Score 100/100

Closemarketing Custom Admin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10mo ago
Risk Assessment

The "closemarketing-custom-admin" plugin version 1.12.1 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices regarding SQL queries, exclusively using prepared statements, and boasts a high percentage of properly escaped output, mitigating common injection and cross-site scripting risks. The absence of known CVEs and a clean vulnerability history further contribute to its perceived security. However, significant concerns arise from the attack surface analysis. The plugin exposes two AJAX handlers, both of which lack authentication checks, creating a direct entry point for potential malicious actions without proper user authorization. While no dangerous functions or unsanitized taint flows were detected, the presence of unprotected AJAX endpoints is a critical oversight that could be exploited if these handlers perform sensitive operations.

Key Concerns

  • 2 AJAX handlers without auth checks
  • 1 external HTTP request
Vulnerabilities
None known

Closemarketing Custom Admin Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Closemarketing Custom Admin Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
95 escaped
Nonce Checks
5
Capability Checks
14
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

90% escaped105 total outputs
Attack Surface
2 unprotected

Closemarketing Custom Admin Attack Surface

Entry Points2
Unprotected2

AJAX Handlers 2

authwp_ajax_send_data_to_nexusclosemarketing-custom-admin.php:64
authwp_ajax_sample-permalinkincludes\class-cca-wpadmin.php:82
WordPress Hooks 70
actionactivated_pluginincludes\class-cca-nexus.php:20
actiondeactivated_pluginincludes\class-cca-nexus.php:21
actionafter_switch_themeincludes\class-cca-nexus.php:22
actionupgrader_process_completeincludes\class-cca-nexus.php:23
actionwp_print_stylesincludes\class-cca-optimizer.php:34
actionadmin_menuincludes\class-cca-wpadmin.php:22
filterxmlrpc_enabledincludes\class-cca-wpadmin.php:25
filtergform_enable_field_label_visibility_settingsincludes\class-cca-wpadmin.php:28
actionwp_dashboard_setupincludes\class-cca-wpadmin.php:31
actionadmin_initincludes\class-cca-wpadmin.php:32
filteradmin_footer_textincludes\class-cca-wpadmin.php:33
filteruser_contactmethodsincludes\class-cca-wpadmin.php:36
actionwp_headincludes\class-cca-wpadmin.php:37
actionadmin_headincludes\class-cca-wpadmin.php:38
action_admin_menuincludes\class-cca-wpadmin.php:39
actionadmin_initincludes\class-cca-wpadmin.php:40
actionwp_dashboard_setupincludes\class-cca-wpadmin.php:41
filterthe_excerpt_rssincludes\class-cca-wpadmin.php:42
filterthe_content_feedincludes\class-cca-wpadmin.php:43
actionadmin_footerincludes\class-cca-wpadmin.php:44
actionafter_setup_themeincludes\class-cca-wpadmin.php:45
actionlogin_headincludes\class-cca-wpadmin.php:49
filtermanage_posts_columnsincludes\class-cca-wpadmin.php:62
filtermanage_pages_columnsincludes\class-cca-wpadmin.php:63
actionmanage_posts_custom_columnincludes\class-cca-wpadmin.php:65
actionmanage_pages_custom_columnincludes\class-cca-wpadmin.php:66
actiondashboard_glance_itemsincludes\class-cca-wpadmin.php:70
actionadmin_initincludes\class-cca-wpadmin.php:73
actionadmin_initincludes\class-cca-wpadmin.php:76
actionadd_attachmentincludes\class-cca-wpadmin.php:77
filtersanitize_file_nameincludes\class-cca-wpadmin.php:78
filtername_save_preincludes\class-cca-wpadmin.php:81
actioninitincludes\class-tgm-plugin-activation.php:268
filterload_textdomain_mofileincludes\class-tgm-plugin-activation.php:269
actioninitincludes\class-tgm-plugin-activation.php:272
actionadmin_menuincludes\class-tgm-plugin-activation.php:421
actionadmin_headincludes\class-tgm-plugin-activation.php:422
filterinstall_plugin_complete_actionsincludes\class-tgm-plugin-activation.php:425
filterupdate_plugin_complete_actionsincludes\class-tgm-plugin-activation.php:426
actionadmin_noticesincludes\class-tgm-plugin-activation.php:429
actionadmin_initincludes\class-tgm-plugin-activation.php:430
actionadmin_enqueue_scriptsincludes\class-tgm-plugin-activation.php:431
actionload-plugins.phpincludes\class-tgm-plugin-activation.php:436
actionswitch_themeincludes\class-tgm-plugin-activation.php:439
actionswitch_themeincludes\class-tgm-plugin-activation.php:442
actionadmin_initincludes\class-tgm-plugin-activation.php:447
actionswitch_themeincludes\class-tgm-plugin-activation.php:452
actionload_textdomain_mofileincludes\class-tgm-plugin-activation.php:475
filterupgrader_source_selectionincludes\class-tgm-plugin-activation.php:889
actionplugins_loadedincludes\class-tgm-plugin-activation.php:2112
filtertgmpa_table_data_itemsincludes\class-tgm-plugin-activation.php:2236
filterupgrader_source_selectionincludes\class-tgm-plugin-activation.php:2977
actionadmin_initincludes\class-tgm-plugin-activation.php:3147
actionupgrader_process_completeincludes\class-tgm-plugin-activation.php:3242
filterupgrader_post_installincludes\class-tgm-plugin-activation.php:3302
filterupgrader_post_installincludes\class-tgm-plugin-activation.php:3447
actionadmin_menuincludes\genesis.php:14
actionwp_enqueue_scriptsincludes\genesis.php:37
actiongenesis_footerincludes\genesis.php:41
filterwp_nav_menu_argsincludes\genesis.php:45
actioninitincludes\genesis.php:60
filtergenesis_pre_get_option_content_archiveincludes\genesis.php:74
filterstyle_loader_srcincludes\genesis.php:82
filterscript_loader_srcincludes\genesis.php:85
filtergenesis_edit_post_linkincludes\genesis.php:97
filterintermediate_image_sizes_advancedincludes\genesis.php:101
actiongenesis_archive_title_descriptionsincludes\genesis.php:110
actionafter_setup_themeincludes\woocommerce.php:12
actionwp_enqueue_scriptsincludes\woocommerce.php:25
actiontgmpa_registerincludes\wp-plugins-recommended.php:13
Maintenance & Trust

Closemarketing Custom Admin Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 28, 2025
PHP min version
Downloads6K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Closemarketing Custom Admin Developer Profile

closemarketing

10 plugins · 8K total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Closemarketing Custom Admin

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/closemarketing-custom-admin/includes/class-tgm-plugin-activation.php/wp-content/plugins/closemarketing-custom-admin/includes/wp-plugins-recommended.php

HTML / DOM Fingerprints

REST Endpoints
/wp-json/closemarketing-custom-admin/v1/nexus-data
FAQ

Frequently Asked Questions about Closemarketing Custom Admin