
Coaching Staffs Security & Risk Analysis
wordpress.org/plugins/coaching-staffsManages multiple sports coaching staffs. Displays tabular rosters, a single coach bios, and coaches galleries.
Is Coaching Staffs Safe to Use in 2026?
Generally Safe
Score 99/100Coaching Staffs has a strong security track record. Known vulnerabilities have been patched promptly.
The 'coaching-staffs' v1.5.3 plugin demonstrates a generally strong security posture, with excellent practices in SQL query handling and output escaping. The absence of dangerous functions, file operations, and external HTTP requests is also a positive sign. Nonce and capability checks are present, indicating an effort to secure entry points. The attack surface appears minimal and protected. However, the presence of one past medium severity Cross-Site Scripting (XSS) vulnerability, even though currently patched, warrants attention. This history suggests a potential for input validation or output sanitization flaws that could be reintroduced in future updates if not rigorously maintained. While current static and taint analysis show no immediate critical or high-severity issues, the past XSS vulnerability is a lingering concern that requires ongoing vigilance.
Key Concerns
- Past medium XSS vulnerability history
Coaching Staffs Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Coaching Staffs <= 1.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
Coaching Staffs Code Analysis
Output Escaping
Data Flow Analysis
Coaching Staffs Attack Surface
Shortcodes 1
WordPress Hooks 29
Maintenance & Trust
Coaching Staffs Maintenance & Trust
Maintenance Signals
Community Trust
Coaching Staffs Alternatives
WP Club Manager – WordPress Sports Club Plugin
wp-club-manager
WP Club Manager is easy to set-up and has everything you need to build and manage an amazing sports club website.
CyberPress
cyberpress
Manage eSport Tournaments, Matches, Teams and Players.
Team Rosters
team-rosters
Manages multiple team rosters. Creates roster tables, player galleries, and player profile pages.
MSTW League Manager
mstw-league-manager
Manages multiple sports leagues and seasons. Displays schedules and standings in multiple formats.
Sportsteam Widget – Football livescore
sportsteam-widget
A widget that shows the next match of a team.
Coaching Staffs Developer Profile
7 plugins · 550 total installs
How We Detect Coaching Staffs
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/coaching-staffs/css/mstw-coaching-staffs.css/wp-content/plugins/coaching-staffs/css/mstw-coaching-staffs-admin.css/wp-content/plugins/coaching-staffs/js/mstw-coaching-staffs.jsHTML / DOM Fingerprints
mstw-cs-table-headmstw-cs-oddmstw-cs-evencoach-headercoach-biocoach-tilecoach-photoIf an admin, load the admin functions (once)Load the MSTW & CS utility functions (once)Add the CSS code to the headerrules_array - an array of rules for the specific css identifier+2 morestaff-head-titlecoach-namecoach-photo