
EZ Login | ورود پیامکی و OTP Security & Risk Analysis
wordpress.org/plugins/ez-loginورود پیامکی (OTP) برای وردپرس + ویجت المنتور + کپچای Cloudflare Turnstile. سبک و سریع (حدود 85 کیلوبایت).
Is EZ Login | ورود پیامکی و OTP Safe to Use in 2026?
Generally Safe
Score 100/100EZ Login | ورود پیامکی و OTP has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ez-login" plugin v1.4 exhibits a generally strong security posture based on the static analysis. The plugin has no known vulnerabilities, and its code demonstrates good practices such as the high percentage of properly escaped output and the use of prepared statements for the majority of its SQL queries. The presence of nonce checks and capability checks on its AJAX handlers is also a positive indicator of security awareness.
However, a key concern arises from the taint analysis, which identified two flows with unsanitized paths. While these did not reach a critical or high severity in this analysis, unsanitized paths are a common precursor to security vulnerabilities, especially if they involve user-supplied input. The plugin also makes external HTTP requests, which, while not inherently insecure, can introduce risks if the remote endpoints are compromised or if data is transmitted insecurely.
Overall, "ez-login" v1.4 appears to be a well-developed plugin with a clean vulnerability history. The primary area for improvement lies in thoroughly sanitizing all paths identified by the taint analysis to mitigate potential future risks. The robust implementation of other security features provides a solid foundation, but the unsanitized paths warrant careful review and remediation.
Key Concerns
- Taint flows with unsanitized paths
EZ Login | ورود پیامکی و OTP Security Vulnerabilities
EZ Login | ورود پیامکی و OTP Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
EZ Login | ورود پیامکی و OTP Attack Surface
AJAX Handlers 7
Shortcodes 1
WordPress Hooks 25
Maintenance & Trust
EZ Login | ورود پیامکی و OTP Maintenance & Trust
Maintenance Signals
Community Trust
EZ Login | ورود پیامکی و OTP Alternatives
AWSA Shipping – Advanced Shipping for Woocommerce and Dokan
awsa-shipping
روش های حمل و نقل با تنظیمات پیشرفته
Rahrayan WP SMS PLUGIN
rahrayan-wp-sms
این پلاگین توسط شرکت مهندسی ره رایان برای وردپرس و ووکامرس نوشته شده و به شما اجازه میدهد پنل پیامک را به وب سایت و فروشگاه اینترنتی خود متصل کنید.
افزونه صباپیامک SabaPayamak
sabapayamak
صباپیامک: ارسال پیامک هنگام رویدادهای مختلف (ورود کاربر، ثبت نظر جدید و...)، ورود دومرحلهای کاربران از طریق پیامک، ارسال و مدیریت پیامکهای مربوط به …
المنتور فارسی
persian-elementor
بسته کامل فارسیساز المنتور با 13 فونت ایرانی، ترجمه المنتور و المنتور پرو، آیکونهای ایرانی، تقویم شمسی، ویجتهای نقشه نشان و آپارات.
افزونه پیامک ووکامرس Persian WooCommerce SMS
persian-woocommerce-sms
افزونه کامل و حرفه ای برای اطلاع رسانی پیامکی سفارشات و رویداد های محصولات ووکامرس
EZ Login | ورود پیامکی و OTP Developer Profile
2 plugins · 140 total installs
How We Detect EZ Login | ورود پیامکی و OTP
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ez-login/assets/js/admin-settings.js/wp-content/plugins/ez-login/assets/js/google-login.js/wp-content/plugins/ez-login/assets/js/sms-login.js/wp-content/plugins/ez-login/assets/css/frontend.css/wp-content/plugins/ez-login/assets/js/frontend.js/wp-content/plugins/ez-login/assets/js/admin-settings.js/wp-content/plugins/ez-login/assets/js/google-login.js/wp-content/plugins/ez-login/assets/js/sms-login.js/wp-content/plugins/ez-login/assets/js/frontend.jsez-login/assets/js/admin-settings.js?ver=ez-login/assets/js/google-login.js?ver=ez-login/assets/js/sms-login.js?ver=ez-login/assets/css/frontend.css?ver=ez-login/assets/js/frontend.js?ver=HTML / DOM Fingerprints
ez-login-form-wrapperez-login-fieldez-login-submitez-login-messageez-login-google-buttonez-sms-login-formez-sms-login-buttonez-captcha-wrapper<!-- EZ-Login --><!-- EZ-Login Form Start --><!-- EZ-Login Form End --><!-- EZ-Login Google Button -->+1 moredata-ez-login-noncedata-ez-login-field-namedata-ez-login-field-typeezLoginAdminAjaxezLoginFrontendAjaxezGoogleLogin[ez_login_form][ez_sms_login_form][ez_google_login_button]