FreeDAM Web Notices Security & Risk Analysis

wordpress.org/plugins/freedam-web-notices

For usage by Freedom Software clients. Retrieves your web notices from your FreeDAM database for displaying on your website.

10 active installs v1.5.2 PHP 8.2+ WP 5.4.2+ Updated Aug 18, 2024
freedamfreedomsoftwarefuneralnoticeweb-notice
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is FreeDAM Web Notices Safe to Use in 2026?

Generally Safe

Score 92/100

FreeDAM Web Notices has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The freedam-web-notices plugin version 1.5.2 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any detected CVEs, coupled with the fact that all SQL queries use prepared statements and a high percentage of outputs are properly escaped, indicates good development practices in these critical areas. Furthermore, the plugin has no documented vulnerability history, which suggests a stable and well-maintained codebase over time.

However, several areas present potential concerns. The complete lack of nonce checks and capability checks on any identified entry points is a significant weakness. While the attack surface is reported as zero, any future additions or unindentified entry points could be vulnerable to cross-site request forgery (CSRF) or unauthorized actions if these checks are not implemented. The presence of file operations and external HTTP requests, even if only one each, warrants scrutiny as these are common vectors for vulnerabilities if not handled with extreme care, especially concerning input validation and sanitization.

Overall, the plugin appears secure in its current state regarding known exploits and common coding pitfalls like raw SQL. The primary areas for improvement lie in the implementation of authorization and validation mechanisms, particularly nonce and capability checks, to proactively defend against potential future vulnerabilities and ensure robust security for any and all entry points.

Key Concerns

  • Missing Nonce Checks
  • Missing Capability Checks
  • File Operations Present
  • External HTTP Requests Present
  • Output Escaping Partially Incomplete (14%)
Vulnerabilities
None known

FreeDAM Web Notices Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

FreeDAM Web Notices Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
23
143 escaped
Nonce Checks
0
Capability Checks
0
File Operations
1
External Requests
1
Bundled Libraries
0

Output Escaping

86% escaped166 total outputs
Attack Surface

FreeDAM Web Notices Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionplugins_loadedincludes\class-freedam-web-notices.php:169
actionadmin_menuincludes\class-freedam-web-notices.php:184
actionadmin_initincludes\class-freedam-web-notices.php:185
actionwp_enqueue_scriptsincludes\class-freedam-web-notices.php:200
actionwp_enqueue_scriptsincludes\class-freedam-web-notices.php:201
Maintenance & Trust

FreeDAM Web Notices Maintenance & Trust

Maintenance Signals

WordPress version tested6.6.5
Last updatedAug 18, 2024
PHP min version8.2
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

FreeDAM Web Notices Developer Profile

freedomsoftware

1 plugin · 10 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect FreeDAM Web Notices

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/freedam-web-notices/public/css/freedam-web-notices-public.css/wp-content/plugins/freedam-web-notices/public/js/freedam-web-notices-public.js
Script Paths
/wp-content/plugins/freedam-web-notices/public/js/freedam-web-notices-public.js
Version Parameters
freedam-web-notices/public/css/freedam-web-notices-public.css?ver=freedam-web-notices/public/js/freedam-web-notices-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
freedam-web-notices-wrapperfreedam-web-notices-container
Data Attributes
data-freedam-api-address
JS Globals
freedam_web_notices_ajax_object
FAQ

Frequently Asked Questions about FreeDAM Web Notices