DeMomentSomTres compatible VC & CPW Security & Risk Analysis

wordpress.org/plugins/demomentsomtres-vc-cpw

Sets Custom Post Widget post type to be public in order to make it compatible with Visual Composer

100 active installs v1.0 PHP + WP 3.9+ Updated Dec 23, 2015
custom-post-widgetjs_composervisual-composerwpbakery
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is DeMomentSomTres compatible VC & CPW Safe to Use in 2026?

Generally Safe

Score 85/100

DeMomentSomTres compatible VC & CPW has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

Based on the provided static analysis, the "demomentsomtres-vc-cpw" plugin version 1.0 exhibits an excellent security posture. The analysis reveals no apparent attack surface, no dangerous functions, no unescaped output, and all SQL queries are properly prepared. Furthermore, there are no observed taint flows or external HTTP requests, indicating a robust approach to input handling and data sanitization. The plugin's vulnerability history is also clean, with no recorded CVEs, suggesting a strong track record and diligent maintenance.

While the lack of any identified security issues is highly positive, the absence of certain common security checks, such as nonce checks and capability checks, might be a consequence of the plugin's limited functionality or attack surface, rather than an intentional omission. However, for plugins with more complex interactions, these checks would be critical. Overall, this plugin appears to be very secure based on the data provided, with no immediate or significant risks identified. Its strengths lie in its clean code, lack of exploitable entry points, and solid vulnerability history.

Vulnerabilities
None known

DeMomentSomTres compatible VC & CPW Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

DeMomentSomTres compatible VC & CPW Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

DeMomentSomTres compatible VC & CPW Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filtercontent_block_post_typedemoemntsomtres-vc-cpw.php:32
Maintenance & Trust

DeMomentSomTres compatible VC & CPW Maintenance & Trust

Maintenance Signals

WordPress version tested4.4.34
Last updatedDec 23, 2015
PHP min version
Downloads7K

Community Trust

Rating100/100
Number of ratings2
Active installs100
Developer Profile

DeMomentSomTres compatible VC & CPW Developer Profile

Marc Queralt i Bassa

15 plugins · 340 total installs

88
trust score
Avg Security Score
91/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect DeMomentSomTres compatible VC & CPW

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/demomentsomtres-vc-cpw/demomentsomtres-vc-cpw.php

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about DeMomentSomTres compatible VC & CPW