Daisycon prijsvergelijkers Security & Risk Analysis

wordpress.org/plugins/daisycon

Promoot adverteerders van Daisycon eenvoudig en goed met de verschillende professionele prijsvergelijkers voor publishers.

400 active installs v5.0.0 PHP 7.4+ WP 3.4.2+ Updated Jun 4, 2025
affiliate-marketingdaisyconvergelijkenvergelijkingssitexml-feed
98
A · Safe
CVEs total2
Unpatched0
Last CVEMay 30, 2025
Safety Verdict

Is Daisycon prijsvergelijkers Safe to Use in 2026?

Generally Safe

Score 98/100

Daisycon prijsvergelijkers has a strong security track record. Known vulnerabilities have been patched promptly.

2 known CVEsLast CVE: May 30, 2025Updated 10mo ago
Risk Assessment

The daisycon plugin v5.0.0 exhibits a generally good security posture based on the static analysis. A significant majority of output is properly escaped (95%), and a healthy percentage of SQL queries use prepared statements (57%), which are positive indicators. The absence of direct file operations and external HTTP requests further reduces the attack surface. However, the presence of 14 shortcodes, while not directly identified as unprotected entry points in this analysis, represents a substantial number of potential interaction points that require careful implementation to prevent vulnerabilities. The vulnerability history of this plugin is a notable concern. With two known medium-severity CVEs, specifically related to Cross-site Scripting and SQL Injection, it suggests a past susceptibility to common web attack vectors. Although there are no currently unpatched vulnerabilities, the historical pattern of these specific vulnerability types indicates a need for continued vigilance and robust security practices in future development.

Key Concerns

  • Medium severity CVEs found in history
  • SQL queries not using prepared statements
  • Some output not properly escaped
Vulnerabilities
2

Daisycon prijsvergelijkers Security Vulnerabilities

CVEs by Year

2 CVEs in 2025
2025
Patched Has unpatched

Severity Breakdown

Medium
2

2 total CVEs

CVE-2025-4590medium · 6.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Daisycon prijsvergelijkers <= 4.9.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

May 30, 2025 Patched in 5.0.0 (56d)
CVE-2025-32148medium · 6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Daisycon prijsvergelijkers <= 4.8.4 - Authenticated (Contributor+) SQL Injection

Apr 4, 2025 Patched in 4.9.0 (113d)
Code Analysis
Analyzed Mar 16, 2026

Daisycon prijsvergelijkers Code Analysis

Dangerous Functions
0
Raw SQL Queries
6
8 prepared
Unescaped Output
13
272 escaped
Nonce Checks
15
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

57% prepared14 total queries

Output Escaping

95% escaped285 total outputs
Data Flows
All sanitized

Data Flow Analysis

25 flows
adminDaisyconSettings (includes\general.php:12)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Daisycon prijsvergelijkers Attack Surface

Entry Points14
Unprotected0

Shortcodes 14

[daisycon_accounting] daisycon.php:135
[daisycon_all_in_one] daisycon.php:136
[daisycon_allesin1] daisycon.php:137
[daisycon_boekhoud] daisycon.php:138
[daisycon_car_lease] daisycon.php:139
[daisycon_dating] daisycon.php:140
[daisycon_energie] daisycon.php:141
[daisycon_energy_be] daisycon.php:142
[daisycon_energy_nl] daisycon.php:143
[daisycon_funeral_insurance] daisycon.php:144
[daisycon_market_research] daisycon.php:145
[daisycon_prefill_energy_nl] daisycon.php:146
[daisycon_sim_only] daisycon.php:147
[daisycon_vacation] daisycon.php:148
WordPress Hooks 4
actionadmin_initdaisycon.php:52
actionadmin_menudaisycon.php:122
actionwp_enqueue_scriptsdaisycon.php:131
actionadmin_menudaisycon.php:132
Maintenance & Trust

Daisycon prijsvergelijkers Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJun 4, 2025
PHP min version7.4
Downloads28K

Community Trust

Rating90/100
Number of ratings2
Active installs400
Developer Profile

Daisycon prijsvergelijkers Developer Profile

Daisycon

2 plugins · 600 total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
85 days
View full developer profile
Detection Fingerprints

How We Detect Daisycon prijsvergelijkers

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/daisycon/css/admin.css/wp-content/plugins/daisycon/js/admin.js/wp-content/plugins/daisycon/css/front.css/wp-content/plugins/daisycon/js/front.js
Script Paths
/wp-content/plugins/daisycon/js/admin.js/wp-content/plugins/daisycon/js/front.js
Version Parameters
daisycon/css/admin.css?ver=daisycon/js/admin.js?ver=daisycon/css/front.css?ver=daisycon/js/front.js?ver=

HTML / DOM Fingerprints

CSS Classes
daisycon-admin-settingsdaisycon-wrapperdaisycon-form-wrapperdaisycon-tools-menudaisycon-tool-item
HTML Comments
<!-- Daisycon settings --><!-- Daisycon admin panel --><!-- Daisycon tool wrapper -->
Data Attributes
data-daisycon-tooldata-daisycon-id
JS Globals
daisycon_vars
Shortcode Output
[daisycon_accounting][daisycon_all_in_one][daisycon_allesin1][daisycon_boekhoud]
FAQ

Frequently Asked Questions about Daisycon prijsvergelijkers