Entego N11 Entegrasyon Eklentisi Security & Risk Analysis

wordpress.org/plugins/entego-n11

Direk Ürünlerinizi n11 de apı bağlantısını sağlayıp ürünleri bir anda tek tuşla n11’de satmaya başlayabilirsiniz.

10 active installs v1.0.8.1 PHP 7.0+ WP 5.3+ Updated May 12, 2020
ecommerceentegrasyoneticaretn11woocommerce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Entego N11 Entegrasyon Eklentisi Safe to Use in 2026?

Generally Safe

Score 85/100

Entego N11 Entegrasyon Eklentisi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The entego-n11 plugin v1.0.8.1 exhibits a mixed security posture. While it demonstrates good practices in avoiding dangerous functions, file operations, and has no recorded historical vulnerabilities, several significant concerns emerge from the static analysis. The plugin has a substantial attack surface with 24 AJAX handlers, and critically, 3 of these lack authentication checks, presenting a direct avenue for unauthorized actions. Furthermore, the complete absence of prepared statements for all 15 SQL queries is a major security flaw, increasing the risk of SQL injection vulnerabilities. While taint analysis did not reveal critical or high severity issues, the presence of 6 flows with unsanitized paths warrants attention as it suggests potential for unexpected behavior or further vulnerabilities depending on the nature of the unsanitized data.

The lack of historical vulnerabilities is a positive indicator, suggesting a potentially stable codebase. However, this is overshadowed by the present-day findings of unprotected AJAX endpoints and the pervasive use of raw SQL. The plugin also has a high percentage of properly escaped outputs (77%), which is a strength, and a good number of nonce checks (25), demonstrating an awareness of common WordPress security mechanisms. The absence of capability checks, however, on AJAX endpoints without authentication is a direct gap that needs addressing.

In conclusion, entego-n11 v1.0.8.1 has some commendable security aspects, but the identified unprotected AJAX handlers and the universal lack of prepared statements for SQL queries represent significant and exploitable risks. These issues significantly weaken its overall security posture despite the absence of historical CVEs. Addressing these points should be a priority to improve the plugin's security.

Key Concerns

  • 3 AJAX handlers without auth checks
  • 15 SQL queries, 0% using prepared statements
  • 0 capability checks
  • 6 flows with unsanitized paths
Vulnerabilities
None known

Entego N11 Entegrasyon Eklentisi Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Entego N11 Entegrasyon Eklentisi Code Analysis

Dangerous Functions
0
Raw SQL Queries
15
0 prepared
Unescaped Output
177
585 escaped
Nonce Checks
25
Capability Checks
0
File Operations
0
External Requests
3
Bundled Libraries
0

SQL Query Safety

0% prepared15 total queries

Output Escaping

77% escaped762 total outputs
Data Flows
6 unsanitized

Data Flow Analysis

10 flows6 with unsanitized paths
entego_n11_setup_anahtarlar (admin\class-entego-n11-admin-kurulum-wizard.php:326)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

Entego N11 Entegrasyon Eklentisi Attack Surface

Entry Points24
Unprotected3

AJAX Handlers 24

authwp_ajax_entego_n11_ayarlar_kaydet_ajaxadmin\class-entego-n11-admin.php:57
authwp_ajax_n11_1_kategori_ajaxadmin\class-entego-n11-admin.php:58
authwp_ajax_n11_kategori_kaydet_ajaxadmin\class-entego-n11-admin.php:59
authwp_ajax_n11_kategori_siladmin\class-entego-n11-admin.php:60
authwp_ajax_n11_mail_abonelik_kaydiadmin\class-entego-n11-admin.php:61
authwp_ajax_entego_n11_wooKat_getiradmin\class-entego-n11-admin.php:62
authwp_ajax_entego-n11-destek-bildirimiadmin\class-entego-n11-admin.php:63
authwp_ajax_entego_n11_etkisizlestirmeadmin\class-entego-n11-admin.php:64
authwp_ajax_entego_n11_uyelik_notu_kaldiradmin\class-entego-n11-admin.php:65
authwp_ajax_entego_n11_urun_ekleadmin\partials\entego-n11-admin-column.php:36
authwp_ajax_entego_n11_urun_ekle_simpleadmin\partials\entego-n11-admin-column.php:37
authwp_ajax_kategori_esle_ajaxadmin\partials\entego-n11-admin-column.php:38
authwp_ajax_entego_n11_urun_siladmin\partials\entego-n11-admin-column.php:39
authwp_ajax_urun_satin_alma_not_ekleadmin\partials\entego-n11-admin-column.php:40
authwp_ajax_sonuclar_n11_kategori_kaydetadmin\partials\entego-n11-admin-column.php:41
authwp_ajax_sonuclar_ozellikler_getiradmin\partials\entego-n11-admin-column.php:42
authwp_ajax_nitelik_kayit_formadmin\partials\entego-n11-admin-column.php:43
authwp_ajax_sonuclar_hata_siladmin\partials\entego-n11-admin-column.php:44
authwp_ajax_entego_setup_urun_bilgileriadmin\partials\entego-n11-admin-column.php:45
authwp_ajax_entego_n11_sonuc_tekrar_siraya_aladmin\partials\entego-n11-admin-column.php:46
authwp_ajax_entego_n11_urun-kategori-kaldiradmin\partials\entego-n11-admin-column.php:47
authwp_ajax_entego_n11_kategori_araadmin\partials\entego-n11-admin-column.php:48
authwp_ajax_entego_n11_urun_kaydetmeadmin\partials\entego-n11-admin-column.php:49
authwp_ajax_entego_n11_marka_siladmin\partials\entego-n11-admin-column.php:50
WordPress Hooks 32
actionadmin_menuadmin\class-entego-n11-admin-kurulum-wizard.php:45
actionadmin_initadmin\class-entego-n11-admin-kurulum-wizard.php:46
actionadmin_enqueue_scriptsadmin\class-entego-n11-admin-kurulum-wizard.php:47
actionwp_loadedadmin\class-entego-n11-admin.php:56
actionplugin_row_metaadmin\class-entego-n11-admin.php:67
filtercron_schedulesadmin\class-entego-n11-admin.php:70
actionbl_cron_hookadmin\class-entego-n11-admin.php:71
filterpost_row_actionsadmin\partials\entego-n11-admin-column.php:10
filterbulk_actions-edit-productadmin\partials\entego-n11-admin-column.php:11
filterhandle_bulk_actions-edit-productadmin\partials\entego-n11-admin-column.php:12
actionadmin_noticesadmin\partials\entego-n11-admin-column.php:13
actionadd_meta_boxesadmin\partials\entego-n11-admin-column.php:14
actionwoocommerce_product_after_variable_attributesadmin\partials\entego-n11-admin-column.php:15
actionwoocommerce_product_options_general_product_dataadmin\partials\entego-n11-admin-column.php:16
actionsave_post_productadmin\partials\entego-n11-admin-column.php:17
actionwoocommerce_save_product_variationadmin\partials\entego-n11-admin-column.php:18
actionsave_post_productadmin\partials\entego-n11-admin-column.php:19
actionwoocommerce_update_product_variationadmin\partials\entego-n11-admin-column.php:20
filterrestrict_manage_postsadmin\partials\entego-n11-admin-column.php:23
filterpre_get_postsadmin\partials\entego-n11-admin-column.php:24
filtermanage_edit-product_columnsadmin\partials\entego-n11-admin-column.php:27
actionmanage_product_posts_custom_columnadmin\partials\entego-n11-admin-column.php:28
filteradmin_footer_textadmin\partials\entego-n11-admin-column.php:31
filterupdate_footeradmin\partials\entego-n11-admin-column.php:32
actionadmin_enqueue_scriptsadmin\partials\entego-n11-admin-column.php:35
actionadmin_initentego-n11.php:90
actionadmin_noticesentego-n11.php:92
actionadmin_noticesentego-n11.php:111
actionadmin_menuincludes\class-entego-n11.php:88
actioninitincludes\class-entego-n11.php:89
actionadmin_enqueue_scriptsincludes\class-entego-n11.php:161
actionadmin_enqueue_scriptsincludes\class-entego-n11.php:162

Scheduled Events 1

bl_cron_hook
Maintenance & Trust

Entego N11 Entegrasyon Eklentisi Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedMay 12, 2020
PHP min version7.0
Downloads2K

Community Trust

Rating20/100
Number of ratings1
Active installs10
Developer Profile

Entego N11 Entegrasyon Eklentisi Developer Profile

entego

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Entego N11 Entegrasyon Eklentisi

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/entego-n11/assets/css/entego-n11-admin.css/wp-content/plugins/entego-n11/assets/js/entego-n11-admin.js
Script Paths
/wp-content/plugins/entego-n11/assets/js/entego-n11-admin.js
Version Parameters
entego-n11/assets/css/entego-n11-admin.css?ver=entego-n11/assets/js/entego-n11-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
entego-n11-kurulumentego_n11_kurulum_notu_gosterentego_n11_uyelik_bitis_notuentego_n11_uyelik_sureBitmisentego_n11_uyelik_krediBitmisentego_n11_uyelik_durumYazdir
FAQ

Frequently Asked Questions about Entego N11 Entegrasyon Eklentisi