
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Security & Risk Analysis
wordpress.org/plugins/domain-for-saleCreate professional domain for sale landing pages in WordPress. Accept offers and inquiries, and manage domain sales directly from your dashboard.
Is Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Safe to Use in 2026?
Generally Safe
Score 99/100Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries has a strong security track record. Known vulnerabilities have been patched promptly.
The 'domain-for-sale' v3.2.1 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by implementing a significant number of nonce and capability checks, and a high percentage of its output is properly escaped, minimizing the risk of cross-site scripting vulnerabilities. The absence of file operations and the limited number of external HTTP requests further contribute to its security. However, the presence of two unprotected AJAX handlers and the use of the `unserialize` function are significant concerns. The unprotected AJAX handlers represent direct entry points for potential attacks without proper authentication or authorization. The `unserialize` function, especially if used with user-supplied data, can lead to remote code execution vulnerabilities if not handled with extreme care. The vulnerability history indicates one past medium-severity CVE related to Cross-site Scripting, which, while currently patched, highlights a potential area of weakness in input sanitization. While the taint analysis shows no critical or high severity issues currently, the underlying code signals and the unprotected entry points warrant careful consideration.
Key Concerns
- Unprotected AJAX handlers present direct attack vectors.
- Use of unserialize function is a high-risk code signal.
- One past medium-severity CVE indicates input sanitization weakness.
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Domain For Sale <= 3.0.10 - Authenticated (Contributor+) Stored Cross-Site Scripting via class_name Parameter
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Attack Surface
AJAX Handlers 12
REST API Routes 2
Shortcodes 3
WordPress Hooks 68
Maintenance & Trust
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Maintenance & Trust
Maintenance Signals
Community Trust
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Alternatives
Go Live Update Urls
go-live-update-urls
Change the domain on your site with one click.
zipaddr-jp
zipaddr-jp
zipaddr-jp is a collaborative tool that automatically inputs addresses from postal codes.
Automatic Domain Changer
automatic-domain-changer
Automatically detects a domain name change, and updates all the WordPress tables in the database to reflect this change.
Doubly – Cross Domain Copy Paste for WordPress
doubly
Easily move, duplicate, backup and copy paste content and designs between your WordPress websites in seconds.
Multiple Domain
multiple-domain
This plugin allows you to have multiple domains in a single Wordpress installation and enables custom redirects for each domain.
Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries Developer Profile
7 plugins · 4K total installs
How We Detect Domain For Sale – Sell Domains with Landing Pages, Offers & Inquiries
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/domain-for-sale/src/Frontend/assets/css/bootstrap.min.css/wp-content/plugins/domain-for-sale/src/Frontend/assets/css/fontawesome.min.css/wp-content/plugins/domain-for-sale/src/Frontend/assets/css/main.css/wp-content/plugins/domain-for-sale/src/Frontend/assets/css/responsive.css/wp-content/plugins/domain-for-sale/src/Frontend/assets/js/bootstrap.bundle.min.js/wp-content/plugins/domain-for-sale/src/Frontend/assets/js/jquery.min.js/wp-content/plugins/domain-for-sale/src/Frontend/assets/js/main.js/wp-content/plugins/domain-for-sale/src/Frontend/assets/js/owl.carousel.min.js+2 more/wp-content/plugins/domain-for-sale/src/Frontend/assets/js/main.jsdomain-for-sale/src/Frontend/assets/css/bootstrap.min.css?ver=domain-for-sale/src/Frontend/assets/css/fontawesome.min.css?ver=domain-for-sale/src/Frontend/assets/css/main.css?ver=domain-for-sale/src/Frontend/assets/css/responsive.css?ver=domain-for-sale/src/Frontend/assets/js/bootstrap.bundle.min.js?ver=domain-for-sale/src/Frontend/assets/js/jquery.min.js?ver=domain-for-sale/src/Frontend/assets/js/main.js?ver=domain-for-sale/src/Frontend/assets/js/owl.carousel.min.js?ver=domain-for-sale/src/Frontend/assets/js/slick.min.js?ver=domain-for-sale/src/Frontend/assets/js/waypoints.min.js?ver=HTML / DOM Fingerprints
dfs-template-settings-wrapperdfs-btn-successdfs-btn-dangerdfs-btn-outline-successdfs-select-all-domainsdomain-for-sale-template-editordomain-for-sale-editor-section<!-- ThemeAtelier --><!-- Designed by ThemeAtelier -->data-dfs-template-iddata-dfs-template-namedata-dfs-template-typedata-dfs-setting-namedata-dfs-apply-ondomain_for_sale_params/wp-json/domain-for-sale/v1/settings/wp-json/domain-for-sale/v1/templates[domain_for_sale_listing[domain_for_sale_search[domain_for_sale_countdown[domain_for_sale_features