
DeMomentSomTres Shortcodes Security & Risk Analysis
wordpress.org/plugins/demomentsomtres-shortcodesThis plugin provides shortcodes that manage multi column layouts.
Is DeMomentSomTres Shortcodes Safe to Use in 2026?
Generally Safe
Score 92/100DeMomentSomTres Shortcodes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "demomentsomtres-shortcodes" plugin version 1.1.1 exhibits a strong security posture based on the provided static analysis. The code demonstrates excellent adherence to secure coding practices, with 100% of SQL queries utilizing prepared statements and all output being properly escaped. The absence of dangerous functions, file operations, and external HTTP requests further bolsters its security. Notably, there are no identified taint flows, indicating that data manipulation within the plugin is handled safely.
Despite the robust static analysis, a significant concern arises from the lack of any authorization checks (capability checks and nonce checks) on its 30 shortcode entry points. While the static analysis did not uncover any immediate vulnerabilities, this oversight represents a potential attack vector. If any of these shortcodes were to process user-supplied input without proper validation and authorization, it could lead to unintended actions or information disclosure.
The plugin's vulnerability history is also a positive indicator, with zero known CVEs. This suggests a history of responsible development and a low likelihood of past security oversights. In conclusion, the plugin is technically well-written with strong foundations in secure coding, but the missing authorization checks on its extensive shortcode interface present a notable weakness that should be addressed to ensure comprehensive security.
Key Concerns
- Missing nonce checks on shortcodes
- Missing capability checks on shortcodes
DeMomentSomTres Shortcodes Security Vulnerabilities
DeMomentSomTres Shortcodes Release Timeline
DeMomentSomTres Shortcodes Code Analysis
SQL Query Safety
DeMomentSomTres Shortcodes Attack Surface
Shortcodes 30
WordPress Hooks 1
Maintenance & Trust
DeMomentSomTres Shortcodes Maintenance & Trust
Maintenance Signals
Community Trust
DeMomentSomTres Shortcodes Alternatives
Team Members
team-members
A responsive and clean way to display your team. Create members, add their positions, bios (and more...) and copy-paste the shortcode anywhere.
Tabby Responsive Tabs
tabby-responsive-tabs
Create responsive tabs inside your posts, pages or custom post content by adding simple shortcodes inside the post editor.
Responsive Tabs
responsive-tabs
A responsive & clean way to display your content. Create new tabs in no-time (custom type) and copy-paste the shortcode into any post/page.
Simple YouTube Responsive
simple-youtube-responsive
Easily embed responsive YouTube videos using a simple shortcode. Lazy load included.
Accordions – Responsive Accordion & FAQ Plugin for WordPress
accordions-wp
Responsive, lightweight, and fully customizable accordion plugin for WordPress. Perfect for FAQs, content organization, and improving user experience.
DeMomentSomTres Shortcodes Developer Profile
19 plugins · 360 total installs
How We Detect DeMomentSomTres Shortcodes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/demomentsomtres-shortcodes/demomentsomtres-shortcodes.cssHTML / DOM Fingerprints
one_thirdone_third lasttwo_thirdstwo_thirds lastone_halfone_half lastone_fourthone_fourth last+20 more<!-- the tabs --><!-- tab "panes" -->stylewidthalignlinksizecolor+4 moretab_counttabs<div class="one_third"><div class="one_third last"><div class="clear"></div><div class="two_thirds">