
ERE Download Document Security & Risk Analysis
wordpress.org/plugins/ere-download-documentERE Download Document use for collect name and email of customer before download attachment.
Is ERE Download Document Safe to Use in 2026?
Generally Safe
Score 85/100ERE Download Document has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ere-download-document v1.0.1 plugin exhibits a generally good security posture, with several positive indicators. The absence of known CVEs and a strong adherence to secure coding practices like output escaping and the use of prepared statements for SQL queries are commendable. The static analysis also reveals a good practice of implementing nonce checks for its AJAX handlers, and there are no reported vulnerabilities in its history. However, a critical area of concern identified by the taint analysis is a flow with an unsanitized path, which could potentially be exploited if a malicious actor can influence the input leading to this flow.
While the plugin's attack surface is limited and all identified entry points have some form of authentication, the presence of a single high-severity taint flow with an unsanitized path warrants attention. This indicates a potential weakness that, while not yet exploited or publicly known, requires mitigation. The vulnerability history being clean is a positive sign, suggesting a responsible development team or a lack of historical security issues. Overall, the plugin is well-secured in many aspects, but the identified taint flow represents a significant, albeit singular, security risk that should be addressed.
Key Concerns
- High severity taint flow with unsanitized path
ERE Download Document Security Vulnerabilities
ERE Download Document Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
ERE Download Document Attack Surface
AJAX Handlers 4
WordPress Hooks 8
Maintenance & Trust
ERE Download Document Maintenance & Trust
Maintenance Signals
Community Trust
ERE Download Document Alternatives
ERE Colors – Essential Real Estate Add-On
ere-colors
ERE Colors - Essential Real Estate Add-On is the most efficient way to re-color your real estate website. It provides 3 color pickers: Accent Color, C …
ERE Recently Viewed – Essential Real Estate Add-On
ere-recently-viewed
ERE Recently Viewed - Essential Real Estate Add-On shows properties viewed by a visitor as a responsive sidebar widget or in post/page using shortcode
ERE Similar Properties – Essential Real Estate Add-On
ere-similar-properties
ERE Similar Properties displays a list of properties that are similar or related to the current property listing
Essential Real Estate
essential-real-estate
Completely plugins Real Estate. Management system which allows you to own and maintain a real estate marketplace, intro website.
Property Hive
propertyhive
Building a property website? Property Hive has everything you need to get started, and so much more.
ERE Download Document Developer Profile
8 plugins · 19K total installs
How We Detect ERE Download Document
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ere-download-document/assets/css/ered.css/wp-content/plugins/ere-download-document/assets/js/ered.js/wp-content/plugins/ere-download-document/assets/css/ered-admin.css/wp-content/plugins/ere-download-document/assets/js/ered-admin.jsere-download-document/assets/css/ered.css?ver=ere-download-document/assets/js/ered.js?ver=ere-download-document/assets/css/ered-admin.css?ver=ere-download-document/assets/js/ered-admin.js?ver=