
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Security & Risk Analysis
wordpress.org/plugins/cookie-notice-and-consent-bannerInstall a Cookie Notice or Consent Banner as Required by Privacy Laws (GDPR & CCPA).
Is Cookie Notice & Consent Banner for GDPR & CCPA Compliance Safe to Use in 2026?
Generally Safe
Score 98/100Cookie Notice & Consent Banner for GDPR & CCPA Compliance has a strong security track record. Known vulnerabilities have been patched promptly.
The plugin 'cookie-notice-and-consent-banner' v1.7.14 exhibits a mixed security posture. While it demonstrates good practices such as using prepared statements for all SQL queries and a high percentage of properly escaped output, there are significant concerns regarding its attack surface and vulnerability history. The presence of two AJAX handlers without authentication checks represents a direct pathway for potential unauthorized actions or information leakage. The taint analysis, though indicating no critical or high severity flows, did identify one flow with an unsanitized path, which could be a precursor to vulnerabilities if not properly handled. The plugin's vulnerability history, with two known medium severity CVEs, both related to Cross-site Scripting, suggests a recurring pattern of input sanitization weaknesses. Although there are currently no unpatched vulnerabilities, this history warrants vigilance. Overall, the plugin has strengths in its data handling and output escaping but requires attention to its access control mechanisms and a consistent effort to address past vulnerability types.
Key Concerns
- Unprotected AJAX handlers
- Unsanitized path in taint flow
- Medium severity CVEs in history
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Cookie Notice & Consent Banner for GDPR & CCPA Compliance <= 1.7.11 - Authenticated (Contributor+) Stored Cross-Site Scripting
Cookie Notice & Consent Banner for GDPR & CCPA Compliance <= 1.7.1 - Authenticated Stored Cross-Site Scripting
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Code Analysis
Output Escaping
Data Flow Analysis
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 18
Maintenance & Trust
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Maintenance & Trust
Maintenance Signals
Community Trust
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Alternatives
CookieTrust
cookietrust
Cookie consent management powered by CookieTrust.io - GDPR & CCPA compliant cookie banner for WordPress.
Geo Targetly Geo Consent
geo-consent
Display cookie consent banners only where needed, by country. Stay compliant with global privacy laws like GDPR, CCPA, LGPD & more.
GDPR Cookie Compliance – Cookie Banner, Cookie Consent, Cookie Notice for CCPA, EU Cookie Law
gdpr-cookie-compliance
Cookie notice banner for GDPR, CCPA, EU cookie law, data protection and privacy regulations and other cookie law and consent notice requirements on yo …
Termly – GDPR/CCPA Cookie Consent Banner
uk-cookie-consent
Our easy to use cookie consent plugin can assist in your GDPR, CCPA, and ePrivacy Directive compliance efforts.
Termageddon: Cookie Consent & Privacy Compliance
termageddon-usercentrics
The most comprehensive cookie consent solution for WordPress. Automatically show consent banners based on visitor location with smart geolocation targ …
Cookie Notice & Consent Banner for GDPR & CCPA Compliance Developer Profile
1 plugin · 6K total installs
How We Detect Cookie Notice & Consent Banner for GDPR & CCPA Compliance
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cookie-notice-and-consent-banner/css/cookiebanner.css/wp-content/plugins/cookie-notice-and-consent-banner/js/cookiebanner.js/wp-content/plugins/cookie-notice-and-consent-banner/js/cookiebanner-init.js/wp-content/plugins/cookie-notice-and-consent-banner/js/cookiebanner.js/wp-content/plugins/cookie-notice-and-consent-banner/js/cookiebanner-init.jscookie-notice-and-consent-banner/js/cookiebanner.js?ver=cookie-notice-and-consent-banner/js/cookiebanner-init.js?ver=HTML / DOM Fingerprints
cncb-js-restorecncb-bannerdata-cncb-optionscncb_plugin_object<a href="#" class="cncb-js-restore">