LearnPress – BuddyPress Integration Security & Risk Analysis

wordpress.org/plugins/learnpress-buddypress

LearnPress buddyPress bring wonderful profile page for LearnPress.

2K active installs v4.0.3 PHP 7.4+ WP 6.3+ Updated Jan 19, 2026
e-learningeducationelearninglearning-management-systemlms
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is LearnPress – BuddyPress Integration Safe to Use in 2026?

Generally Safe

Score 100/100

LearnPress – BuddyPress Integration has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The static analysis of learnpress-buddypress v4.0.3 reveals a generally strong security posture, with no identified dangerous functions, external HTTP requests, or file operations. All SQL queries are appropriately prepared, and there are no recorded vulnerabilities in its history. This indicates a proactive approach to security by the developers. However, a significant concern arises from the low percentage of properly escaped output (28%). This suggests a potential for cross-site scripting (XSS) vulnerabilities, where untrusted data displayed to users might not be sufficiently sanitized, allowing attackers to inject malicious scripts. While the attack surface appears limited with no exposed AJAX handlers, REST API routes, shortcodes, or cron events without authentication checks, the lack of nonce and capability checks across the entire plugin means that even if these entry points were present, they might not be adequately secured, leaving room for potential privilege escalation or unauthorized actions if new entry points are introduced in future updates.

Key Concerns

  • Low output escaping percentage
  • No nonce checks
  • No capability checks
Vulnerabilities
None known

LearnPress – BuddyPress Integration Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

LearnPress – BuddyPress Integration Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
13
5 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

28% escaped18 total outputs
Attack Surface

LearnPress – BuddyPress Integration Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 10
actiontemplate_redirectinc\functions.php:73
actionwp_enqueue_scriptsinc\load.php:31
actionwp_loadedinc\load.php:57
actionbp_setup_admin_barinc\load.php:60
actionadmin_enqueue_scriptsinc\load.php:61
actionbp_template_contentinc\load.php:267
filterbp_activity_maybe_load_mentions_scriptsinc\load.php:330
actionadmin_noticeslearnpress-buddypress.php:74
actionadmin_noticeslearnpress-buddypress.php:84
actionlearn-press/readylearnpress-buddypress.php:90
Maintenance & Trust

LearnPress – BuddyPress Integration Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 19, 2026
PHP min version7.4
Downloads118K

Community Trust

Rating20/100
Number of ratings3
Active installs2K
Developer Profile

LearnPress – BuddyPress Integration Developer Profile

ThimPress

21 plugins · 209K total installs

70
trust score
Avg Security Score
87/100
Avg Patch Time
265 days
View full developer profile
Detection Fingerprints

How We Detect LearnPress – BuddyPress Integration

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/learnpress-buddypress/assets/css/buddypress.css/wp-content/plugins/learnpress-buddypress/assets/js/buddypress.js
Script Paths
/wp-content/plugins/learnpress-buddypress/assets/js/buddypress.js
Version Parameters
/wp-content/plugins/learnpress-buddypress/assets/css/buddypress.css?ver=/wp-content/plugins/learnpress-buddypress/assets/js/buddypress.js?ver=

HTML / DOM Fingerprints

CSS Classes
learnpress-buddypress-courseslearnpress-buddypress-quizzeslearnpress-buddypress-orderslp-bp-wrapper
JS Globals
learn_press_paramsLP_Meta_Box
FAQ

Frequently Asked Questions about LearnPress – BuddyPress Integration