
Custom Sidebars by ProteusThemes Security & Risk Analysis
wordpress.org/plugins/custom-sidebars-by-proteusthemesAllows you to create custom sidebars. Replace sidebars for specific posts and pages.
Is Custom Sidebars by ProteusThemes Safe to Use in 2026?
Use With Caution
Score 63/100Custom Sidebars by ProteusThemes has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The plugin "custom-sidebars-by-proteusthemes" v1.0.3 exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests are positive indicators. The high percentage of properly escaped output further contributes to its strength. However, the zero nonce checks are a significant concern, especially given the presence of an AJAX handler. This lack of protection on the single entry point creates a potential for cross-site request forgery attacks.
The vulnerability history reveals a known medium severity CVE, which is currently unpatched. While the specific type of CSRF suggests a pattern, the fact that it remains unpatched is a serious drawback. The static analysis did not reveal any critical or high severity taint flows, which is positive, but the presence of an AJAX handler without a nonce check, combined with the unpatched CVE, elevates the overall risk.
In conclusion, while the plugin demonstrates strong development practices in many areas, the combination of an unpatched CVE and the absence of nonce checks on its sole AJAX handler presents a notable security risk. Addressing the unpatched vulnerability and implementing nonce checks on the AJAX handler are critical steps to improve the plugin's security.
Key Concerns
- Unpatched medium severity CVE
- Missing nonce check on AJAX handler
- Less than 100% output escaping
Custom Sidebars by ProteusThemes Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Custom Sidebars by ProteusThemes <= 1.0.3 - Cross-Site Request Forgery
Custom Sidebars by ProteusThemes Code Analysis
Output Escaping
Custom Sidebars by ProteusThemes Attack Surface
AJAX Handlers 1
WordPress Hooks 17
Maintenance & Trust
Custom Sidebars by ProteusThemes Maintenance & Trust
Maintenance Signals
Community Trust
Custom Sidebars by ProteusThemes Alternatives
Content Aware Sidebars – Fastest Widget Area Plugin
content-aware-sidebars
Display new sidebars on any post, page, category etc. Works with Classic Widgets, Block Widgets, and all themes!
Simple Page Sidebars
simple-page-sidebars
Easily assign custom, widget-enabled sidebars to any page.
Multiple Sidebar Generator
multiple-sidebar-generator
Easily assign custom, widget-enabled sidebars to any page.
WP Custom Sidebars
wp-custom-sidebars
Create unlimited sidebars for pages/posts easily without writing a single line of code!
Ocean Custom Sidebar
ocean-custom-sidebar
Generates an unlimited number of sidebars and place them on any page you wish. Go to Theme Panel > Sidebars to create your custom sidebars.
Custom Sidebars by ProteusThemes Developer Profile
3 plugins · 5K total installs
How We Detect Custom Sidebars by ProteusThemes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/custom-sidebars-by-proteusthemes/assets/css/main.min.css/wp-content/plugins/custom-sidebars-by-proteusthemes/assets/js/main.min.js/wp-content/plugins/custom-sidebars-by-proteusthemes/bower_components/tinyscrollbar/lib/jquery.tinyscrollbar.min.js/wp-content/plugins/custom-sidebars-by-proteusthemes/assets/js/main.min.js/wp-content/plugins/custom-sidebars-by-proteusthemes/bower_components/tinyscrollbar/lib/jquery.tinyscrollbar.min.jscustom-sidebars-by-proteusthemes/assets/css/main.min.css?ver=custom-sidebars-by-proteusthemes/assets/js/main.min.js?ver=custom-sidebars-by-proteusthemes/bower_components/tinyscrollbar/lib/jquery.tinyscrollbar.min.js?ver=HTML / DOM Fingerprints
pt-cs-main-jsPT_CS_VERSION