
DK White Label Security & Risk Analysis
wordpress.org/plugins/dk-white-labelCustomize WordPress Dashboard Branding
Is DK White Label Safe to Use in 2026?
Generally Safe
Score 91/100DK White Label has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "dk-white-label" plugin, version 1.2, presents a mixed security posture. While the static analysis shows a commendable lack of direct attack surface vectors like AJAX handlers, REST API routes, shortcodes, or cron events, and all SQL queries are properly prepared, there are significant areas of concern. The low percentage of properly escaped output (42%) suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, especially given the history of XSS being a common vulnerability type for this plugin. The taint analysis, despite a limited number of flows analyzed, revealed unsanitized paths, which coupled with the poor output escaping, could allow attackers to inject malicious scripts into the application. The vulnerability history, though showing no currently unpatched critical or high-severity issues, does indicate a past medium-severity vulnerability related to XSS, and the general pattern suggests the need for more robust input validation and output sanitization. The complete absence of nonce and capability checks on potential entry points (even though there are none identified) is a missed security best practice that could become a problem if new entry points are added in the future without proper security checks.
Overall, the plugin avoids common, easily exploitable entry points, which is a positive sign. However, the identified weaknesses in output escaping and the presence of unsanitized taint flows are critical security flaws that could lead to significant risks if exploited. The historical trend of XSS vulnerabilities further underscores the importance of addressing these issues. The lack of comprehensive security checks like nonces and capability checks, while not immediately exploitable with the current attack surface, represents a latent risk. Therefore, while the plugin demonstrates some good practices, the identified output escaping and taint flow issues, combined with historical patterns, necessitate a cautious approach and prompt remediation.
Key Concerns
- Low percentage of properly escaped output
- Taint flows with unsanitized paths
- History of XSS vulnerabilities
- No nonce checks
- No capability checks
DK White Label Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
DK White Label <= 1.0 - Reflected Cross-Site Scripting
DK White Label Code Analysis
Output Escaping
Data Flow Analysis
DK White Label Attack Surface
WordPress Hooks 23
Maintenance & Trust
DK White Label Maintenance & Trust
Maintenance Signals
Community Trust
DK White Label Alternatives
White Label CMS
white-label-cms
Customise dashboard panels and branding, hide menus plus lots more.
Ultimate Client Dash
ulimate-client-dash
Create a custom client dashboard, manage user capabilities, white label and rebrand WordPress, provide instructions, create custom widgets and more.
CMS Dashboard
content-management-system-dashboard
Improve the usability of your Wordpress CMS system. This plug-in creates a dashboard widget with clearly labeled large buttons of the most common task …
All in One Login Styler
all-in-one-login-styler
Easily customize the WordPress login page with your own logo, background image, and custom colors — no coding required.
Easily navigate pages on dashboard
easily-navigate-pages-on-your-dashboard
Displays a windows explorer style list of your pages on your Dashboard.
DK White Label Developer Profile
4 plugins · 100 total installs
How We Detect DK White Label
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/dk-white-label/assets/css/dkwl-admin.css/wp-content/plugins/dk-white-label/assets/js/dkwl-admin.js/wp-content/plugins/dk-white-label/assets/css/dkwl-frontend.css/wp-content/plugins/dk-white-label/assets/js/dkwl-frontend.js/wp-content/plugins/dk-white-label/assets/js/dkwl-login.js/wp-content/plugins/dk-white-label/assets/js/settings-admin.jsdk-white-label/assets/css/dkwl-admin.css?ver=dk-white-label/assets/js/dkwl-admin.js?ver=dk-white-label/assets/css/dkwl-frontend.css?ver=dk-white-label/assets/js/dkwl-frontend.js?ver=dk-white-label/assets/js/dkwl-login.js?ver=dk-white-label/assets/js/settings-admin.js?ver=HTML / DOM Fingerprints
dkwl-login-logodkwl-admin-footer-textdkwl-custom-admin-cssdkwl-custom-login-css<!-- DK White Label : login page --><!-- DK White Label : admin elements --><!-- DK White Label : color scheme --><!-- DK White Label : footer -->+11 moredata-dkwl-login-bg-colordata-dkwl-admin-footer-textdkwl_login_optionsdkwl_admin_options