
Faculty and Staff Directory Security & Risk Analysis
wordpress.org/plugins/faculty-and-staff-directoryA Faculty and Staff Directory listing for a college, university, or other school.
Is Faculty and Staff Directory Safe to Use in 2026?
Generally Safe
Score 100/100Faculty and Staff Directory has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The faculty-and-staff-directory plugin version 1.51 presents a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and including a nonce check. Its vulnerability history is clean, with no recorded CVEs, suggesting a potentially well-maintained codebase or a lack of past security scrutiny. However, several concerns arise from the static analysis. The presence of `create_function`, a deprecated and often insecure PHP function, is a significant red flag. Furthermore, a very low percentage of output is properly escaped, indicating a high risk of Cross-Site Scripting (XSS) vulnerabilities, especially considering the plugin has at least one shortcode which can be an entry point for user-supplied data to reach output functions. The absence of capability checks on its single entry point (shortcode) also means any authenticated user could potentially leverage its functionality, even if they are not intended to.
Key Concerns
- Use of deprecated and insecure create_function()
- Low output escaping rate (12%)
- Missing capability checks on entry point
Faculty and Staff Directory Security Vulnerabilities
Faculty and Staff Directory Code Analysis
Dangerous Functions Found
Output Escaping
Faculty and Staff Directory Attack Surface
Shortcodes 1
WordPress Hooks 18
Maintenance & Trust
Faculty and Staff Directory Maintenance & Trust
Maintenance Signals
Community Trust
Faculty and Staff Directory Alternatives
StaffList
stafflist
A super simplified staff directory tool
Campus Directory – Faculty, Staff & Student Directory Plugin for WordPress
campus-directory
Create a responsive, searchable directory for faculty, staff, or students—perfect for schools, colleges, and universities using WordPress.
Business Directory Plugin – Easy Listing Directories for WordPress
business-directory-plugin
The easy Business Directory Plugin for WordPress. Build an easy team directory, member directory, staff directory, church directory, and more.
Team Members – Multi Language Supported Team Plugin
team-showcase-supreme
Multi-language supported Team Members - Team with Slide is the best plugins to display unlimited team in Carouse and Grid view.
Organization chart
organization-chart
WordPress organization chart plugin is a nice and handy tool for creating simple and nice organizational charts. If you have any suggestions about the …
Faculty and Staff Directory Developer Profile
3 plugins · 120 total installs
How We Detect Faculty and Staff Directory
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/faculty-and-staff-directory/css/faculty-staff-styles.cssHTML / DOM Fingerprints
name="facstafftitle"name="facstaffcompany"name="facstaffemail"name="facstafftwitter"name="facstafflinkedin"name="facstaffphone"+4 more