Create User With Password Multisite Security & Risk Analysis

wordpress.org/plugins/create-user-with-password-multisite

Allow website administrators to allocate passwords to users as they add them to invidivual sites in WordPress Multisite.

60 active installs v1.10.0 PHP 5.6+ WP 3.0.1+ Updated Jan 22, 2026
adminmultisitepasswordregistrationuser
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Create User With Password Multisite Safe to Use in 2026?

Generally Safe

Score 100/100

Create User With Password Multisite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The plugin "create-user-with-password-multisite" v1.10.0 demonstrates a strong security posture based on the provided static analysis. There are no identified dangerous functions, all SQL queries utilize prepared statements, and all output is properly escaped. The absence of file operations and external HTTP requests further reduces the potential attack surface. Nonce and capability checks are present, indicating an awareness of WordPress security best practices for its entry points.

The static analysis reveals a minimal attack surface with zero AJAX handlers, REST API routes, shortcodes, or cron events. This means there are no direct entry points for attackers to exploit. Furthermore, the taint analysis shows no flows with unsanitized paths, and zero critical or high-severity issues. The plugin's vulnerability history is also clean, with no known CVEs, which suggests a history of secure development or a lack of past significant security incidents.

Overall, this plugin appears to be very secure with no immediately evident vulnerabilities. Its strengths lie in its limited attack surface, adherence to secure coding practices regarding data handling and output, and a clean security history. The primary weakness, if one can call it that given the data, is the very small number of total entry points, which might suggest limited functionality or that potential entry points are not being analyzed or are intentionally absent. However, based on the provided data, the plugin is robust.

Vulnerabilities
None known

Create User With Password Multisite Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Create User With Password Multisite Release Timeline

v1.10.1
v1.10.0Current
v1.0.9
v1.0.8
Code Analysis
Analyzed Mar 16, 2026

Create User With Password Multisite Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
0
6 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

100% escaped6 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
cuwp_listen (php\cuwp.php:78)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Create User With Password Multisite Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionuser_new_formphp\cuwp.php:13
actionadmin_enqueue_scriptsphp\cuwp.php:16
actionplugins_loadedphp\cuwp.php:19
actionadmin_action_createuserphp\cuwp.php:22
filterwpmu_signup_user_notificationphp\cuwp.php:118
filterwpmu_welcome_user_notificationphp\cuwp.php:119
Maintenance & Trust

Create User With Password Multisite Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 22, 2026
PHP min version5.6
Downloads11K

Community Trust

Rating86/100
Number of ratings10
Active installs60
Developer Profile

Create User With Password Multisite Developer Profile

Moove Agency

6 plugins · 308K total installs

78
trust score
Avg Security Score
99/100
Avg Patch Time
314 days
View full developer profile
Detection Fingerprints

How We Detect Create User With Password Multisite

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/create-user-with-password-multisite/css/style.css
Script Paths
/wp-content/plugins/create-user-with-password-multisite/js/cuwp.js

HTML / DOM Fingerprints

CSS Classes
hook-passpass-error
Data Attributes
name="cuwp_security"value="cuwp"name="cuwp_pass1"name="cuwp_pass2"
FAQ

Frequently Asked Questions about Create User With Password Multisite