Simple Fixed Notice Security & Risk Analysis

wordpress.org/plugins/dn-cookie-notice

A simple fixed banner that shows a notice on the use of cookies and allows you to insert the link to the cookie policy and privacy policy.

30 active installs v1.6 PHP 5.6+ WP 5.0+ Updated Nov 13, 2024
bannercookieinfo-bannernoticepopup
71
B · Generally Safe
CVEs total1
Unpatched1
Last CVEApr 1, 2025
Download
Safety Verdict

Is Simple Fixed Notice Safe to Use in 2026?

Mostly Safe

Score 71/100

Simple Fixed Notice is generally safe to use though it hasn't been updated recently. 1 past CVE were resolved. Keep it updated.

1 known CVE 1 unpatched Last CVE: Apr 1, 2025Updated 1yr ago
Risk Assessment

The "dn-cookie-notice" v1.6 plugin exhibits a generally strong security posture based on the static analysis. The absence of a significant attack surface, dangerous functions, file operations, or external HTTP requests is a positive indicator. Furthermore, the high percentage of properly escaped output and the use of prepared statements for all SQL queries demonstrate good coding practices. However, a critical concern arises from the plugin's vulnerability history. A known, unpatched medium-severity CVE from 2025 indicates a latent risk that could be exploited. The fact that this is the only documented vulnerability type (CSRF) and it remains unpatched is particularly worrying, suggesting potential ongoing exposure for users who have not updated to a hypothetical patched version.

Key Concerns

  • Unpatched Medium Severity CVE
  • No Nonce Checks on Entry Points
  • Capability Checks Missing
  • High Percentage of Output Escaping (88%)
Vulnerabilities
1

Simple Fixed Notice Security Vulnerabilities

CVEs by Year

1 CVE in 2025 · unpatched
2025
Patched Has unpatched

Severity Breakdown

Medium
1

1 total CVE

CVE-2025-31840medium · 4.3Cross-Site Request Forgery (CSRF)

Simple Fixed Notice <= 1.6 - Cross-Site Request Forgery

Apr 1, 2025Unpatched
Code Analysis
Analyzed Mar 16, 2026

Simple Fixed Notice Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
7
52 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

88% escaped59 total outputs
Attack Surface

Simple Fixed Notice Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actionadmin_menudn-cookie-notice.php:21
actionadd_meta_boxesdn-cookie-notice.php:142
actionsave_postdn-cookie-notice.php:174
actionadmin_initdn-cookie-notice.php:183
actioninitdn-cookie-notice.php:203
actionadmin_noticesdn-cookie-notice.php:231
actiondn_cookie_noticedn-cookie-notice.php:239
actiondn_footerdn-cookie-notice.php:240
actionwp_footerdn-cookie-notice.php:241
actionadmin_enqueue_scriptsdn-cookie-notice.php:319
Maintenance & Trust

Simple Fixed Notice Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 13, 2024
PHP min version5.6
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Simple Fixed Notice Developer Profile

digireturn

7 plugins · 350 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
8 days
View full developer profile
Detection Fingerprints

How We Detect Simple Fixed Notice

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/dn-cookie-notice/css/style.css/wp-content/plugins/dn-cookie-notice/js/dn-cookie-notice.js
Script Paths
/wp-content/plugins/dn-cookie-notice/js/dn-cookie-notice.js
Version Parameters
dn-cookie-notice/style.css?ver=dn-cookie-notice/js/dn-cookie-notice.js?ver=

HTML / DOM Fingerprints

CSS Classes
dn_cookie_notice_class_logodn_cookie_notice_class_tabledn_cookie_notice_class_textarea
Data Attributes
dn_cookie_notice_save[status]dn_cookie_notice_save[position]dn_cookie_notice_post[notice]
JS Globals
dn_cookie_notice_agreed
Shortcode Output
[privacypagelink][cookiespagelink]
FAQ

Frequently Asked Questions about Simple Fixed Notice