
Geo-Target Dragon Radar Security & Risk Analysis
wordpress.org/plugins/geo-target-dragon-radarPlugin ULTRA Léger permettant d'afficher la localisation de l'internaute via son adresse IP pour augmenter votre taux de transformation.
Is Geo-Target Dragon Radar Safe to Use in 2026?
Generally Safe
Score 100/100Geo-Target Dragon Radar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The geo-target-dragon-radar plugin v1.0.1 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries and output escaping, ensuring these common attack vectors are handled securely. The absence of known CVEs and a clean vulnerability history suggests a relatively stable and well-maintained codebase historically.
However, the static analysis reveals significant concerns. The presence of two 'unserialize' calls is a critical red flag, as unserialization of untrusted data is a well-known vulnerability that can lead to remote code execution. Coupled with this, the taint analysis indicates two flows with unsanitized paths, both flagged as high severity. This suggests that data flowing into the plugin might not be adequately validated or sanitized before being processed, potentially exacerbating the risks associated with 'unserialize' or other functions.
While the attack surface is small and there are no publicly known vulnerabilities, the potential for serious issues stemming from deserialization and unsanitized data flows warrants caution. The plugin's strengths in SQL and output handling are overshadowed by the high-risk indicators in its code analysis. A thorough security audit focusing on the 'unserialize' functions and the identified unsanitized taint flows is highly recommended.
Key Concerns
- Dangerous function 'unserialize' used
- High severity unsanitized taint flows (x2)
- No nonce checks on entry points
Geo-Target Dragon Radar Security Vulnerabilities
Geo-Target Dragon Radar Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Geo-Target Dragon Radar Attack Surface
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
Geo-Target Dragon Radar Maintenance & Trust
Maintenance Signals
Community Trust
Geo-Target Dragon Radar Alternatives
If-So Geolocation
if-so-geolocation
All-in-one geolocation. Personalized content, geolocation Dynamic Keyword Insertion shortcodes, Rediects, and more. No coding required!
WT GeoTargeting
wt-geotargeting
Гибкая настройка геотаргетинга.
DocoDoco GeoTargeting
docodoco-geotargeting
サイト訪問者のアクセス元の国や企業属性に基づき、表示するコンテンツを切り替えるためのプラグインです。
All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic
all-in-one-seo-pack
AIOSEO is the most powerful WordPress SEO plugin. Improve SEO rankings and traffic with comprehensive SEO tools and smart AI SEO optimizations!
WPCode – Insert Headers and Footers + Custom Code Snippets – WordPress Code Manager
insert-headers-and-footers
Easily add code snippets in WordPress. Insert header & footer scripts, add PHP code snippets with conditional logic, insert ads pixel code, and more.
Geo-Target Dragon Radar Developer Profile
7 plugins · 200 total installs
How We Detect Geo-Target Dragon Radar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/geo-target-dragon-radar/tinymscript.jsHTML / DOM Fingerprints
[dragonradar