
Dino Divulgador de Notícias Security & Risk Analysis
wordpress.org/plugins/dino-divulgador-de-noticiasExternal services
Is Dino Divulgador de Notícias Safe to Use in 2026?
Generally Safe
Score 100/100Dino Divulgador de Notícias has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'dino-divulgador-de-noticias' v3.4 plugin exhibits a concerning security posture, primarily due to a significant attack surface that is entirely unprotected. With 10 REST API routes lacking any permission callbacks, all of these entry points are exposed to unauthorized access. While the plugin demonstrates good practices in other areas, such as perfect output escaping and the absence of dangerous functions or file operations, this fundamental flaw in access control for its REST API is a major vulnerability. The plugin's vulnerability history is clean, with no recorded CVEs, suggesting past development might have been more secure or less scrutinized. However, the current static analysis highlights a critical weakness that, if exploited, could lead to unauthorized data manipulation or disclosure. The presence of nonce checks and some use of prepared statements are positive signs, but they do not mitigate the immediate risk posed by the unprotected REST API endpoints. The plugin's strengths in output sanitization and lack of known vulnerabilities are overshadowed by the lack of authentication on its primary entry points.
Key Concerns
- REST API routes without permission callbacks
- Large attack surface without auth
- Capability checks: 0
Dino Divulgador de Notícias Security Vulnerabilities
Dino Divulgador de Notícias Code Analysis
SQL Query Safety
Output Escaping
Dino Divulgador de Notícias Attack Surface
REST API Routes 10
WordPress Hooks 20
Maintenance & Trust
Dino Divulgador de Notícias Maintenance & Trust
Maintenance Signals
Community Trust
Dino Divulgador de Notícias Alternatives
Brasil 61 – Conteúdo gratuito para rádios, sites e blogs.
brasil-61-conteudo-gratuito-para-radios-sites-e-blogs
Plugin para importação automática de notícias do portal Brasil61.
pay bi
ebi-pay
El plugin de pay bi es una solución de Banco Industrial que le proporciona funciones de pago para sitios de comercio electrónico que se encuentren des …
NotiPress Noticias
notipress-noticias
Plugin para la obtención de contenidos informativos de la agencia de noticias NotiPress.
Calendario del Perú
calendario-del-peru
Muestra eventos del día del Calendario peruano. Este plugin mostrará 5 titulares del Calendario, todos los días.
Plugin Gazeta News – Gazeta da Ilha
gazeta-news
Este widget lhe permite manter seu site sempre atualizado com as principais noticias do Portal Gazeta da Ilha
Dino Divulgador de Notícias Developer Profile
1 plugin · 10 total installs
How We Detect Dino Divulgador de Notícias
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
dino-divulgador-de-noticias/v1dino-divulgador-de-noticias/v1/authdino-divulgador-de-noticias/v1/delete-news