
Libro de Reclamaciones y Quejas Security & Risk Analysis
wordpress.org/plugins/libro-de-reclamaciones-y-quejasLibro de reclamaciones válido para Perú con los campos obligatorios exigidos por Indecopi.
Is Libro de Reclamaciones y Quejas Safe to Use in 2026?
Mostly Safe
Score 77/100Libro de Reclamaciones y Quejas is generally safe to use. 2 past CVEs were resolved. Keep it updated.
The "libro-de-reclamaciones-y-quejas" plugin version 1.2 exhibits a mixed security posture, with some encouraging signs offset by significant concerns. The use of prepared statements for all SQL queries is a strong positive, as is the limited use of file operations and external HTTP requests. However, the presence of four AJAX handlers without any authentication checks creates a substantial attack surface and a direct pathway for potential unauthorized actions. The taint analysis, while not revealing critical or high severity issues, did identify two flows with unsanitized paths, which, combined with the unprotected AJAX endpoints, could be leveraged in tandem to exploit the plugin. The vulnerability history is particularly worrying, with two known CVEs, one of which remains unpatched. The nature of these past vulnerabilities (SQL Injection and CSRF) suggests recurring issues in handling user input and maintaining session integrity, which are amplified by the current lack of nonce checks.
Key Concerns
- Unprotected AJAX handlers
- Unpatched CVE
- Low output escaping coverage
- No nonce checks
- Flows with unsanitized paths
- Bundled library (dompdf)
Libro de Reclamaciones y Quejas Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Libro de Reclamaciones y Quejas <= 0.9 - Authenticated (Administrator+) SQL Injection
Libro de Reclamaciones y Quejas <= 0.9 - Cross-Site Request Forgery to Stored Cross-Site Scripting
Libro de Reclamaciones y Quejas Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Libro de Reclamaciones y Quejas Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 5
Maintenance & Trust
Libro de Reclamaciones y Quejas Maintenance & Trust
Maintenance Signals
Community Trust
Libro de Reclamaciones y Quejas Alternatives
Libro de Reclamaciones y Quejas Developer Profile
11 plugins · 9K total installs
How We Detect Libro de Reclamaciones y Quejas
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/libro-de-reclamaciones-y-quejas/css/style.css/wp-content/plugins/libro-de-reclamaciones-y-quejas/css/form_rt_libro.css/wp-content/plugins/libro-de-reclamaciones-y-quejas/js/form_rt_libro.js/wp-content/plugins/libro-de-reclamaciones-y-quejas/js/rt_libro_reclamaciones.jslibro-de-reclamaciones-y-quejas/css/style.css?ver=libro-de-reclamaciones-y-quejas/css/form_rt_libro.css?ver=libro-de-reclamaciones-y-quejas/js/form_rt_libro.js?ver=libro-de-reclamaciones-y-quejas/js/rt_libro_reclamaciones.js?ver=HTML / DOM Fingerprints
rt-libro-reclamaciones-formdata-departamentodata-provinciadata-distritodata-type-docdata-type-doc-tutorajaxurlrt_libro_data/wp-json/rt-libro/v1/claims<div class="rt-libro-reclamaciones-form"><h4>Libro de Reclamaciones</h4>