
Sport Predictions for JoomSport Security & Risk Analysis
wordpress.org/plugins/joomsport-predictionOrganize a sports prediction game on your site to improve fan engagement. Matches are pulled from JoomSport. The points are updated automatically!
Is Sport Predictions for JoomSport Safe to Use in 2026?
Generally Safe
Score 100/100Sport Predictions for JoomSport has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The joom-sport-prediction plugin v3.0.7 exhibits a concerning security posture, primarily due to a significant attack surface that lacks authentication. With 22 AJAX handlers and none of them protected by authentication checks, these entry points are wide open to potential abuse. While the plugin does not have a public vulnerability history, the static analysis reveals several concerning code signals, including the presence of the `unserialize` function, which is notoriously dangerous if used with untrusted input. Furthermore, only 30% of output is properly escaped, leaving room for cross-site scripting (XSS) vulnerabilities, and only 36% of SQL queries use prepared statements, increasing the risk of SQL injection. The high number of unsanitized paths in taint analysis, particularly 7 classified as high severity, strongly suggests that user-supplied data is not being adequately validated or sanitized before being processed, creating direct pathways for malicious input to impact the application's behavior or data.
Key Concerns
- Large attack surface without auth checks
- Dangerous function: unserialize
- Low percentage of properly escaped output
- Low percentage of prepared SQL statements
- High severity taint flows (unsanitized)
- Missing nonce checks on AJAX handlers
Sport Predictions for JoomSport Security Vulnerabilities
Sport Predictions for JoomSport Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Sport Predictions for JoomSport Attack Surface
AJAX Handlers 22
WordPress Hooks 36
Maintenance & Trust
Sport Predictions for JoomSport Maintenance & Trust
Maintenance Signals
Community Trust
Sport Predictions for JoomSport Alternatives
Euro 2012 Predictor
euro-2012-predictor
Plugin to manage and present a fantasy football (soccer) competition for the UEFA 2012 Euro Championships
Football Predictor
football-predictor
To manage and perform a marvel football competition for the FIFA World Cup 2018.
Football Pool
football-pool
Add some game-day fun to your WordPress site! Let users predict match results, earn points, and go head-to-head in a fantasy sports pool.
National Weather Service Alerts
national-weather-service-alerts
Easily add official National Weather Service alerts to your website.
Worldtides Widget
worldtides-widget
This widget is perfect for anyone who wants accurate, low-cost tide predictions on their website. WorldTides.info provides tide predictions at consume …
Sport Predictions for JoomSport Developer Profile
3 plugins · 1K total installs
How We Detect Sport Predictions for JoomSport
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/joomsport-prediction/sportleague/assets/css/prediction.css/wp-content/plugins/joomsport-prediction/sportleague/assets/js/jsprediction.js/wp-content/plugins/joomsport-prediction/assets/js/common.js/wp-content/plugins/joomsport-prediction/assets/css/common.css/wp-content/plugins/joomsport-prediction/assets/css/iconstyles.css/wp-content/plugins/joomsport-prediction/sportleague/assets/js/jsprediction.jsjoomsport-prediction/sportleague/assets/css/prediction.css?ver=joomsport-prediction/sportleague/assets/js/jsprediction.js?ver=joomsport-prediction/assets/js/common.js?ver=joomsport-prediction/assets/css/common.css?ver=joomsport-prediction/assets/css/iconstyles.css?ver=HTML / DOM Fingerprints
jswprediction_leaguejswprediction_rounddata-wp-i18njswprediction_leaguejswprediction_round