JWD Teams Security & Risk Analysis

wordpress.org/plugins/jwd-teams

Create unlimited Team Showcases and display them through a generated shortcode. Easily.

60 active installs v1.5.3 PHP + WP 5.0+ Updated Aug 27, 2020
members-profilesmy-teamour-teamsteamteam-members
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is JWD Teams Safe to Use in 2026?

Generally Safe

Score 85/100

JWD Teams has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "jwd-teams" plugin v1.5.3 exhibits a generally good security posture, with no known historical vulnerabilities and a strong adherence to secure coding practices such as using prepared statements for all SQL queries and properly escaping a high percentage of output. The absence of dangerous functions, file operations, and external HTTP requests further strengthens its security. However, there are notable areas of concern within the static analysis results. The presence of two AJAX handlers without authentication checks represents a significant potential attack vector. While the total attack surface is small, these unprotected entry points could allow unauthenticated users to trigger unintended actions, potentially leading to various exploits depending on the functionality of these handlers. The lack of any taint analysis results, while positive in that no critical or high-severity vulnerabilities were found, also suggests limited or no dynamic analysis was performed, which could miss subtle vulnerabilities.

Key Concerns

  • AJAX handlers without authentication checks
  • Limited taint analysis coverage
Vulnerabilities
None known

JWD Teams Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

JWD Teams Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
36 escaped
Nonce Checks
5
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped42 total outputs
Attack Surface
2 unprotected

JWD Teams Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_reset_team_settingsincludes\class-jwdteams.php:174
authwp_ajax_mceGetTeamsincludes\class-jwdteams.php:175

Shortcodes 1

[jwd_team] public\class-jwdteams-public.php:107
WordPress Hooks 15
filtermce_external_pluginsadmin\class-jwdteams-admin.php:174
filtermce_buttonsadmin\class-jwdteams-admin.php:175
actionplugins_loadedincludes\class-jwdteams.php:146
filteradmin_footer_textincludes\class-jwdteams.php:160
filterupdate_footerincludes\class-jwdteams.php:161
filtermanage_jwd_team_posts_columnsincludes\class-jwdteams.php:163
actionadmin_enqueue_scriptsincludes\class-jwdteams.php:166
actioninitincludes\class-jwdteams.php:167
actioninitincludes\class-jwdteams.php:168
actionmanage_jwd_team_posts_custom_columnincludes\class-jwdteams.php:169
actionadd_meta_boxesincludes\class-jwdteams.php:170
actionsave_postincludes\class-jwdteams.php:171
actionadmin_bar_menuincludes\class-jwdteams.php:172
actionwp_enqueue_scriptsincludes\class-jwdteams.php:186
actioninitincludes\class-jwdteams.php:187
Maintenance & Trust

JWD Teams Maintenance & Trust

Maintenance Signals

WordPress version tested5.5.18
Last updatedAug 27, 2020
PHP min version
Downloads4K

Community Trust

Rating54/100
Number of ratings3
Active installs60
Developer Profile

JWD Teams Developer Profile

JordacheWD [JWD]

2 plugins · 140 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect JWD Teams

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jwd-teams/admin/css/jwdteams-admin.min.css/wp-content/plugins/jwd-teams/admin/css/jwdteams-admin-rtl.min.css/wp-content/plugins/jwd-teams/admin/css/jwdteams-mce.min.css/wp-content/plugins/jwd-teams/admin/js/jwdteams-admin.min.js
Script Paths
/wp-content/plugins/jwd-teams/admin/js/jwdteams-admin.min.js
Version Parameters
jwdteams-style?ver=jwdteams-style-rtl?ver=jwdteams-fontawesome?ver=jwdteams-script?ver=

HTML / DOM Fingerprints

CSS Classes
jwdtm-containerjwdtm-member-listjwdtm-single-memberjwdtm-member-detailsjwdtm-member-infojwdtm-member-social
HTML Comments
JWD Teams is free software: you can redistribute and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 2 of the License, or any later version.You should have received a copy of the GNU General Public License along with JWD Teams. If not, see <http://www.gnu.org/licenses/>.If this file is called directly, abort.The core plugin class that is used to define internationalization, admin-specific hooks, and public-facing site hooks.+17 more
Data Attributes
data-team-iddata-team-slug
JS Globals
jt__getTeams
Shortcode Output
[jwd_teams][jwd_teams id=""][jwd_teams slug=""]
FAQ

Frequently Asked Questions about JWD Teams