Cloudapps Course Manager Security & Risk Analysis

wordpress.org/plugins/cloudapps-course-manager

Display courses and accept online registrations on your site. For trainers, sports clubs, and freelance instructors.

0 active installs v1.1.1 PHP 7.0+ WP 5.6+ Updated Mar 7, 2026
class-schedulingcourse-bookingcourse-managementevent-registrationonline-booking
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cloudapps Course Manager Safe to Use in 2026?

Generally Safe

Score 100/100

Cloudapps Course Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 28d ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the cloudapps-course-manager plugin v1.1.1 exhibits a strong security posture with no detected vulnerabilities in its current version. The static analysis reveals a commendably clean codebase, with no apparent attack surface exposed through AJAX handlers, REST API routes, shortcodes, or cron events. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security. All SQL queries are properly prepared, and output is consistently escaped, demonstrating adherence to secure coding practices. The taint analysis also shows no concerning flows, indicating no exploitable paths for malicious data injection. Furthermore, the complete lack of recorded vulnerabilities, both historically and currently, suggests a history of responsible development and diligent patching, or potentially a very limited adoption and exposure.

However, the analysis does highlight a complete absence of nonce checks and capability checks. While this may not pose an immediate risk given the zero attack surface, it represents a significant gap in fundamental WordPress security practices. In the event that new entry points are introduced in future versions, the lack of these checks could expose the plugin to cross-site request forgery (CSRF) and unauthorized privilege escalation attacks. The absence of any recorded vulnerabilities is a positive sign, but it's essential to recognize that this could also be due to a lack of rigorous independent auditing or a limited attack surface that has simply not been tested extensively. Therefore, while the current state is secure, the lack of built-in authentication mechanisms for potential future attack vectors is a point of concern.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Cloudapps Course Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Cloudapps Course Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
12 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped12 total outputs
Attack Surface

Cloudapps Course Manager Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menuadmin\class-cloudapps-course-manager-admin.php:15
actionadmin_enqueue_scriptsadmin\class-cloudapps-course-manager-admin.php:16
actioninitadmin\class-cloudapps-course-manager-admin.php:17
actionadmin_noticesadmin\class-cloudapps-course-manager-admin.php:18
actionadmin_initadmin\class-cloudapps-course-manager-admin.php:19
actioninitincludes\class-cloudapps-course-manager.php:21
actionwp_headincludes\class-cloudapps-course-manager.php:22
Maintenance & Trust

Cloudapps Course Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 7, 2026
PHP min version7.0
Downloads641

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Cloudapps Course Manager Developer Profile

texperience

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cloudapps Course Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cloudapps-course-manager/ui/build/index.js/wp-content/plugins/cloudapps-course-manager/ui/build/index.css
Script Paths
plugins/cloudapps-course-manager/ui/build/index.js
Version Parameters
cloudapps-course-manager-settings?ver=cloudapps-course-manager-init?ver=

HTML / DOM Fingerprints

CSS Classes
cloudapps-course-manager-holder
Data Attributes
data-widget-id
JS Globals
CloudappsCourseManager
REST Endpoints
/wp-json/cloudapps-course-manager/v1/options
Shortcode Output
<div id="CloudappsCourseList_
FAQ

Frequently Asked Questions about Cloudapps Course Manager