
EchBay Admin Security Security & Risk Analysis
wordpress.org/plugins/echbay-admin-securityProtect Your Website Admin Against Hackers & Modify Login Page Design ( Nhiệm vụ: chặn mọi truy cập trực tiếp vào trang quản trị wordpress dưới dạ …
Is EchBay Admin Security Safe to Use in 2026?
Generally Safe
Score 99/100EchBay Admin Security has a strong security track record. Known vulnerabilities have been patched promptly.
The "echbay-admin-security" plugin v1.3.1 presents a mixed security posture. On the positive side, the plugin exhibits a clean attack surface with no apparent AJAX handlers, REST API routes, shortcodes, or cron events exposed without authentication. Furthermore, all observed SQL queries are properly prepared, and there are no external HTTP requests. However, significant concerns arise from the code analysis, particularly the low percentage of properly escaped output (37%) and the presence of a single flow with an unsanitized path. While the taint analysis did not flag any critical or high severity issues, the unsanitized path is a notable risk for potential injection vulnerabilities. The vulnerability history shows a single medium severity Cross-Site Scripting (XSS) vulnerability recorded in the past. The fact that this vulnerability is currently patched is positive, but the pattern of XSS suggests a recurring area of weakness that requires ongoing vigilance and robust output sanitization. Overall, while the plugin avoids common pitfalls like direct SQL injection and a large attack surface, the insufficient output escaping and the historical XSS vulnerability indicate that further hardening is needed.
Key Concerns
- Insufficient output escaping
- Flow with unsanitized path
- History of medium severity XSS
EchBay Admin Security Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
EchBay Admin Security <= 1.3.0 - Reflected Cross-Site Scripting
EchBay Admin Security Code Analysis
Output Escaping
Data Flow Analysis
EchBay Admin Security Attack Surface
WordPress Hooks 4
Maintenance & Trust
EchBay Admin Security Maintenance & Trust
Maintenance Signals
Community Trust
EchBay Admin Security Alternatives
Protect WP Admin
protect-wp-admin
Protect your WP site by changing the default wp-admin URL and customizing the login page for enhanced security.
Secure WP Admin
secure-wp-admin
Want to lock your WP-admin login screen with some PIN to make it more secure? Then this is the right plugin.
Protect Admin Login
protect-admin-login
A simple plugin allows to overwrite wp-admin url to login backend.
Secure Admin Access
secure-admin-access
Secure Your Website Admin And Dashboard Access & Modify Login Page Design & Login Attempts for login protection
MM Login Customization
mm-login-customization
To hide admin login url by this plugin auto generated URL and make secure your site and it's data. You may frequenty change the URL for your site …
EchBay Admin Security Developer Profile
8 plugins · 2K total installs
How We Detect EchBay Admin Security
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/echbay-admin-security/404.htmlHTML / DOM Fingerprints
EAS_SESSION_IDEAS_HIDDEN_CAPTCHAEAS_ARIA_REQUIRED