
Plugin Security & Risk Analysis
wordpress.org/plugins/dashboard-user-profile-dupA smart, easy way to add Dashboard User Profile Widget to your Wordpress Site.
Is Plugin Safe to Use in 2026?
Generally Safe
Score 85/100Plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "dashboard-user-profile-dup" plugin v1.0 exhibits a mixed security posture. On the positive side, the static analysis reveals no identified vulnerabilities in its vulnerability history, and it has no known CVEs. The code also uses prepared statements for all SQL queries and includes capability checks. However, a significant concern arises from the complete lack of output escaping for all identified output points. This means any dynamic data displayed by the plugin is potentially vulnerable to cross-site scripting (XSS) attacks, as it is not being properly sanitized before rendering in the browser.
The absence of AJAX handlers, REST API routes, shortcodes, and cron events, along with zero taint analysis findings, suggests a limited attack surface and no immediately obvious critical vulnerabilities. The lack of nonce checks on AJAX handlers is not applicable as there are no AJAX handlers. The absence of dangerous functions, file operations, and external HTTP requests further contributes to a perceived low risk in those areas. Despite the lack of known vulnerabilities and a small attack surface, the pervasive issue with unescaped output presents a substantial security weakness that could be exploited.
Key Concerns
- 0% properly escaped output
Plugin Security Vulnerabilities
Plugin Release Timeline
Plugin Code Analysis
Output Escaping
Plugin Attack Surface
WordPress Hooks 3
Maintenance & Trust
Plugin Maintenance & Trust
Maintenance Signals
Community Trust
Plugin Alternatives
Dashboard User profile Detais-(DUPD)
dashboard-user-profile-detais-dupd
A smart, easy way to add Dashboard User Profile Widget to your Wordpress Site.
ProfileGrid – User Profiles, Groups and Communities
profilegrid-user-profiles-groups-and-communities
Custom user profiles plugin ❤ with paid memberships, groups, communities, content restriction, user registration, messaging, WooCommerce memberships, …
CodeChief
codechief
A awesome WordPress plugin to manage many user options and create many new features easily from admin panel.
User Role Editor
user-role-editor
User Role Editor WordPress plugin makes user roles and capabilities changing easy. Edit/add/delete WordPress user roles and capabilities.
Simple History – Track, Log, and Audit WordPress Changes
simple-history
Track changes and user activities on your WordPress site. See who created a page, uploaded an attachment, and more, for a complete audit trail.
Plugin Developer Profile
2 plugins · 20 total installs
How We Detect Plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
dup-texttuner-nametop-holderimage-holderinstructionname-status-holderinfo-holdertt_dts-generic-switch+2 moreid="dup"id="tt_dts-generic-switch"class="tt_dts-type-switch tt_dts-active"<span class="jf_typo_highlight_green">Welcome <strong> <a href="profile.php" class="button button-primary button-large" target="_blank">Edit Profile</a></strong></span>