
KNVB Api plugin Security & Risk Analysis
wordpress.org/plugins/knvb-apiShow teams:
Is KNVB Api plugin Safe to Use in 2026?
Generally Safe
Score 85/100KNVB Api plugin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The knvb-api plugin v1.13 exhibits a generally good security posture based on the provided static analysis. The absence of known vulnerabilities and a lack of critical or high severity issues in taint analysis are positive indicators. The plugin demonstrates good practices regarding SQL queries, exclusively using prepared statements, and a reasonable level of output escaping. The limited attack surface, with no unprotected entry points identified, further contributes to its perceived security.
However, there are notable areas of concern. The complete absence of nonce checks and capability checks across all entry points is a significant weakness. This means that any user, regardless of their role or permissions, could potentially interact with these entry points, leaving them vulnerable to various attacks such as Cross-Site Request Forgery (CSRF) if the functionality allows for state-changing operations. While no specific dangerous functions or unsanitized paths were found in the static analysis, the lack of authorization controls is a fundamental security flaw that needs immediate attention.
In conclusion, while the plugin has strengths in data handling and a small attack surface, the critical oversight in implementing proper authorization and nonce checks renders it susceptible to potential exploits. The lack of historical vulnerabilities is a positive trend, but it does not mitigate the current risks posed by the missing security controls.
Key Concerns
- Missing Nonce Checks
- Missing Capability Checks
- Unescaped Output (36% improperly escaped)
KNVB Api plugin Security Vulnerabilities
KNVB Api plugin Code Analysis
Output Escaping
KNVB Api plugin Attack Surface
Shortcodes 3
WordPress Hooks 2
Maintenance & Trust
KNVB Api plugin Maintenance & Trust
Maintenance Signals
Community Trust
KNVB Api plugin Alternatives
Shortcodes KNVB API
shortcodes-knvb-api
Voetbal clubs in het bezit van een API sleutel voor de KNVB Dataservice kunnen deze plugin gebruiken om API data te tonen in een wordpress website.
Football Ranking
football-ranking
Give your users access to updated world rankings for international football (soccer) teams.
Football Club Manager for Sportlink
fcm-for-sportlink
Automatically import Sportlink data into the Football Club Manager WordPress plugin.
Meta for WooCommerce
facebook-for-woocommerce
Get the Official Meta for WooCommerce plugin for powerful ways to help grow your business.
PixelYourSite – Your smart PIXEL (TAG) & API Manager
pixelyoursite
Add Meta Pixel with Conversion API, Google Analytics (GA4) + Consent Mode, Google Tag Manager, and Head & Footer scripts.
KNVB Api plugin Developer Profile
1 plugin · 10 total installs
How We Detect KNVB Api plugin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
knvbteamteam-resultsteam-rankingteam-scheduleknvbteamknvbteam-slider/teams//teams/.+?/results/teams/.+?/ranking/teams/.+?/schedule<div class="knvb"><div class="team"><div class="team-results"><div class="team-ranking">