
Interview Security & Risk Analysis
wordpress.org/plugins/interviewInterview plugin allows to create a webcam recorded interview width questions/answers, send it to applicants and quickly publish these interviews into …
Is Interview Safe to Use in 2026?
Mostly Safe
Score 70/100Interview is generally safe to use though it hasn't been updated recently. 1 past CVE were resolved. Keep it updated.
The "interview" plugin v1.01 presents a mixed security posture. On the positive side, it demonstrates good practices in SQL query handling, with 88% of queries using prepared statements, and a high rate of output escaping (92%). The plugin also includes a reasonable number of nonce checks (12), which is a fundamental security measure. However, there are significant areas of concern. The presence of one unprotected AJAX handler is a critical flaw, opening a potential attack vector. Furthermore, the taint analysis reveals three flows with unsanitized paths, although they are not categorized as critical or high severity. This warrants further investigation into the specific nature of these unsanitized paths. The plugin's vulnerability history is particularly alarming, with one currently unpatched medium severity CVE related to SQL injection. This indicates a recurring issue with how the plugin handles user input and database interactions, and the fact that it remains unpatched is a serious risk.
While the plugin shows strengths in areas like SQL prepared statements and output escaping, the combination of an unprotected AJAX handler, unsanitized taint flows, and a recent unpatched SQL injection vulnerability significantly elevates its risk profile. The plugin author needs to address the unprotected AJAX endpoint immediately and investigate the identified taint flows. The historical pattern of SQL injection vulnerabilities suggests a deeper architectural issue that needs a thorough code review and remediation to prevent future exploits. Users should exercise caution and consider the potential risks associated with using this plugin until these vulnerabilities are addressed.
Key Concerns
- 1 unprotected AJAX handler
- 3 flows with unsanitized paths
- 1 currently unpatched medium CVE (SQL Injection)
- 0 capability checks
Interview Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Interview <= 1.01 - Authenticated (Contributor+) SQL Injection
Interview Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Interview Attack Surface
AJAX Handlers 15
Shortcodes 2
WordPress Hooks 4
Maintenance & Trust
Interview Maintenance & Trust
Maintenance Signals
Community Trust
Interview Alternatives
Analyticator
analyticator
Simple GA4, GTM, and Hotjar integration. Securely inject tracking scripts into your WordPress site without editing any code.
Calipio Screen Recorder
calipio-screen-recorder
Calipio Screen Recorder
Pipe Audio Video and Screen Recorder
pipe-audio-video-and-screen-recorder
This plugin simplifies the integration between the Pipe Platform and WordPress. It lets your website users and visitors record audio, video, and scree …
Screen Recorder
record-screen
Screen Recorder allows to record and play back user activity on your blog.
Hotjar
hotjar
The fast & visual way to understand your users.
Interview Developer Profile
5 plugins · 150 total installs
How We Detect Interview
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/interview/css/interviewAdmin.css/wp-content/plugins/interview/js/interviewAdmin.js/wp-content/plugins/interview/js/summernote/summernote-lite.min.css/wp-content/plugins/interview/js/summernote/summernote-lite.min.js/wp-content/plugins/interview/js/interviewAdmin.js/wp-content/plugins/interview/js/summernote/summernote-lite.min.jsinterviewAdmin.css?cache=interviewAdmin.js?cache=interviewAdmin.js?ver=HTML / DOM Fingerprints
interviewErrorinterviewAdminContainerinterviewInviteContainerinviteInterviewContainerinterviewEditContainereditInterviewContainerinterviewAddContaineraddNewInterviewContainer+2 moredata-interview-iddata-interview-question-idparams