Docs Viewer Add-On for WP Job Openings Security & Risk Analysis

wordpress.org/plugins/docs-viewer-add-on-for-wp-job-openings

The plugin will add a preview of the uploaded resume in the applicant detail page of WP Job Openings Plugin. You need not download the uploaded resume …

6K active installs v1.0.1 PHP + WP 4.0+ Updated Feb 10, 2026
cv-viewerdocs-viewerjobs-pluginresume-viewerwp-job-openings
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Docs Viewer Add-On for WP Job Openings Safe to Use in 2026?

Generally Safe

Score 100/100

Docs Viewer Add-On for WP Job Openings has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The security posture of the 'docs-viewer-add-on-for-wp-job-openings' plugin version 1.0.1 appears strong based on the provided static analysis and vulnerability history. The absence of any detected dangerous functions, raw SQL queries, file operations, external HTTP requests, or taint flows with unsanitized paths is commendable. Furthermore, the 100% output escaping and the presence of a capability check suggest good coding practices for handling potential vulnerabilities.

However, the plugin exhibits a concerning lack of entry points with authentication checks. With zero AJAX handlers, REST API routes, shortcodes, or cron events that are protected, the plugin relies entirely on the single capability check for its security. While this check is a positive sign, the complete absence of other security mechanisms like nonces on potential AJAX requests (even though none are listed) and specific permission callbacks for REST API routes could become a weakness if the plugin's functionality were to expand or if unforeseen entry points are discovered.

The clean vulnerability history, with zero recorded CVEs of any severity, is a significant strength and indicates a history of secure development. In conclusion, while the plugin demonstrates a good foundation for security with its current codebase and history, the minimal attack surface and the reliance on a single capability check for all potential interactions represent a potential area for concern if the plugin's functionality evolves or if new attack vectors emerge.

Key Concerns

  • Zero AJAX handlers without auth checks
  • Zero REST API routes without permission callbacks
  • Zero shortcodes
  • Zero cron events
  • Zero dangerous functions
  • 100% SQL using prepared statements
  • 100% output properly escaped
  • Zero file operations
  • Zero external HTTP requests
  • Zero nonce checks
  • One capability check present
  • No bundled libraries
  • Zero taint flows with unsanitized paths
  • Zero known CVEs
Vulnerabilities
None known

Docs Viewer Add-On for WP Job Openings Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Docs Viewer Add-On for WP Job Openings Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
6 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped6 total outputs
Attack Surface

Docs Viewer Add-On for WP Job Openings Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionplugins_loadeddocs-viewer.php:33
actionadd_meta_boxesdocs-viewer.php:34
actionadmin_initdocs-viewer.php:35
actionadmin_noticesdocs-viewer.php:98
actionplugins_loadeddocs-viewer.php:112
Maintenance & Trust

Docs Viewer Add-On for WP Job Openings Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedFeb 10, 2026
PHP min version
Downloads36K

Community Trust

Rating74/100
Number of ratings3
Active installs6K
Developer Profile

Docs Viewer Add-On for WP Job Openings Developer Profile

awsm.in

7 plugins · 100K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
115 days
View full developer profile
Detection Fingerprints

How We Detect Docs Viewer Add-On for WP Job Openings

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
awsm-resume-none
FAQ

Frequently Asked Questions about Docs Viewer Add-On for WP Job Openings