
Dilemma Lite Security & Risk Analysis
wordpress.org/plugins/dilemma-liteThe plugin can help you understand what, out of two options, your website users prefer. This is a good way to implement A/B testing
Is Dilemma Lite Safe to Use in 2026?
Generally Safe
Score 85/100Dilemma Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'dilemma-lite' v1.1.1 plugin presents a mixed security posture. On the positive side, it demonstrates good practices by exclusively using prepared statements for its SQL queries and has no recorded historical vulnerabilities or known CVEs, suggesting a generally well-maintained codebase. However, significant concerns arise from the static analysis. The plugin exposes a considerable attack surface through AJAX handlers, with a substantial portion of these lacking any authentication checks. Furthermore, the output escaping is critically deficient, with only 1% of outputs properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities. The absence of nonce checks on AJAX handlers exacerbates the risk of CSRF attacks against these unprotected endpoints. The bundled outdated version of jQuery also presents a potential risk if vulnerabilities exist in that specific version.
Key Concerns
- AJAX handlers without auth checks
- Poor output escaping (1% escaped)
- No nonce checks on AJAX handlers
- Bundled outdated library (jQuery v1.6.4)
Dilemma Lite Security Vulnerabilities
Dilemma Lite Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Dilemma Lite Attack Surface
AJAX Handlers 4
Shortcodes 4
WordPress Hooks 15
Maintenance & Trust
Dilemma Lite Maintenance & Trust
Maintenance Signals
Community Trust
Dilemma Lite Alternatives
Yes/No Chart
yesno
This plugin provides the function to create a set of questions to answer with "yes / no (/or other)". Yes/Noチャートを作れるプラグインです。
CPS | Age Verification
surbma-yes-no-popup
Shows a popup with age verification options. One of the best plugin for any membership or 18+ adult sites or any sites, that requires confirmation fro …
Divine Astro
horoscope-and-tarot
Divineapi.com is a leading API platform for services like Daily Horoscope, Tarot reading, Kundali, Panchang, Natal Chart, Fortune Cookie, Coffee Cup r …
YesNology WordPress Plugin
yesnology
YesNology Plugin for WordPress allows you to collect data from your website in a GDPR compliant way.
Complianz – GDPR/CCPA Cookie Consent
complianz-gdpr
Configure your Cookie Banner, Cookie Consent and Cookie Policy with our Wizard and Cookies Scan.
Dilemma Lite Developer Profile
3 plugins · 30 total installs
How We Detect Dilemma Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dilemma-lite/css/dilemmaadmin.css/wp-content/plugins/dilemma-lite/css/epic.css/wp-content/plugins/dilemma-lite/css/dilemma.css/wp-content/plugins/dilemma-lite/js/dilemma.js/wp-content/plugins/dilemma-lite/js/dilemma.jsdilemma-lite/css/dilemmaadmin.css?ver=dilemma-lite/css/epic.css?ver=dilemma-lite/css/dilemma.css?ver=dilemma-lite/js/dilemma.js?ver=HTML / DOM Fingerprints
dilemma-plugin-settingsdilemma-plugin-configdilemma-catsdilemma-tagsdilIPdil_lovedsdil_affdiltimerdilemma_vars