Dadevarzan WordPress Branch Security & Risk Analysis

wordpress.org/plugins/dadevarzan-wp-branch

Dadevarzan Branch Post Type

20 active installs v1.3.4 PHP 7.2+ WP 4.4.0+ Updated May 31, 2022
branchdadehvarzandadevarzanwordpresswp
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Dadevarzan WordPress Branch Safe to Use in 2026?

Generally Safe

Score 85/100

Dadevarzan WordPress Branch has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "dadevarzan-wp-branch" plugin version 1.3.4 exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, external HTTP requests, file operations, and the consistent use of prepared statements for all SQL queries are significant strengths. Furthermore, the plugin effectively escapes most of its output, with 83% being properly handled. The vulnerability history is clean, with no recorded CVEs, which suggests a generally well-maintained and secure codebase.

Despite these positives, there are a few areas that warrant attention. The lack of any nonce checks or capability checks across all identified entry points (shortcodes) is a notable concern. This means that any user, regardless of their role or permissions, could potentially trigger the functionality associated with these shortcodes. While the attack surface is small (2 shortcodes), the complete absence of these fundamental WordPress security mechanisms leaves them exposed. The taint analysis showing zero flows is excellent, but the lack of auth checks on the existing entry points is a missed opportunity for robust security.

In conclusion, the "dadevarzan-wp-branch" plugin is largely secure due to its coding practices regarding SQL, output escaping, and its clean vulnerability history. However, the complete absence of nonce and capability checks on its shortcodes represents a clear risk that should be addressed to prevent potential unauthorized actions or information disclosure.

Key Concerns

  • Shortcodes lack nonce checks
  • Shortcodes lack capability checks
  • Some output is not properly escaped
Vulnerabilities
None known

Dadevarzan WordPress Branch Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Dadevarzan WordPress Branch Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
5 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

83% escaped6 total outputs
Attack Surface

Dadevarzan WordPress Branch Attack Surface

Entry Points2
Unprotected0

Shortcodes 2

[dv-branch-filter] dadevarzan-wp-branch.php:36
[dv-branch-table-view] dadevarzan-wp-branch.php:38
WordPress Hooks 7
actionplugins_loadeddadevarzan-wp-branch.php:28
actioninitdadevarzan-wp-branch.php:29
actioninitdadevarzan-wp-branch.php:30
actioninitdadevarzan-wp-branch.php:31
actioninitdadevarzan-wp-branch.php:32
actionplugins_loadeddadevarzan-wp-branch.php:33
actionpre_get_postsdadevarzan-wp-branch.php:35
Maintenance & Trust

Dadevarzan WordPress Branch Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.0
Last updatedMay 31, 2022
PHP min version7.2
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Dadevarzan WordPress Branch Developer Profile

Dadevarzan

19 plugins · 2K total installs

91
trust score
Avg Security Score
87/100
Avg Patch Time
7 days
View full developer profile
Detection Fingerprints

How We Detect Dadevarzan WordPress Branch

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
dadevarzan-wp-branch/style.css?ver=dadevarzan-wp-branch/assets/js/main.js?ver=dadevarzan-wp-branch/assets/js/filter-script.js?ver=

HTML / DOM Fingerprints

Data Attributes
dv-brnch-addressdv-brnch-phonedv-brnch-faxdv-brnch-postalcodedv-brnch-googlemap
JS Globals
dadevarzan_wp_branch_obj
REST Endpoints
/wp-json/dadevarzan-wp-branch/v1/branches
Shortcode Output
[dv-branch-filter][dv-branch-table-view]
FAQ

Frequently Asked Questions about Dadevarzan WordPress Branch