
Meet My Team Security & Risk Analysis
wordpress.org/plugins/meet-my-teamMeet My Team is an awesome way to display your team members in a grid with a modal for each team member!
Is Meet My Team Safe to Use in 2026?
Mostly Safe
Score 71/100Meet My Team is generally safe to use though it hasn't been updated recently. 1 past CVE were resolved. Keep it updated.
The "meet-my-team" plugin v2.1.1 exhibits a mixed security posture, with some positive indicators but significant areas of concern. The plugin utilizes prepared statements for all SQL queries, a strong practice that mitigates SQL injection risks. Furthermore, the absence of file operations and external HTTP requests reduces the attack surface in those areas. However, the presence of one unpatched medium severity CVE, identified as Cross-site Scripting, is a critical vulnerability that has not been addressed since September 2022. This indicates a lack of ongoing maintenance and a disregard for known security flaws.
The static analysis reveals a moderately sized attack surface with two AJAX handlers, and worryingly, both lack authentication checks. This, coupled with the presence of the `unserialize` function, which can be a vector for arbitrary code execution when handling untrusted input, presents a significant risk. While no critical or high severity taint flows were detected, the low percentage of properly escaped output (8%) suggests a high likelihood of stored or reflected Cross-site Scripting vulnerabilities, especially when combined with the unprotected AJAX endpoints and the history of XSS CVEs.
In conclusion, while the plugin demonstrates some good security practices in its database interactions, the unpatched CVE, unprotected AJAX endpoints, use of `unserialize`, and poor output escaping collectively paint a concerning picture. The plugin is vulnerable to known XSS and potentially other attacks due to insufficient input validation and lack of authentication on critical entry points. The age of the last known vulnerability suggests a lack of active development and security attention, making it a risky choice for deployment.
Key Concerns
- Unpatched CVE (Medium)
- AJAX handlers without auth checks (2)
- Improper output escaping (low percentage)
- Dangerous function (unserialize)
Meet My Team Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Meet My Team <= 2.0.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Meet My Team Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Meet My Team Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 29
Maintenance & Trust
Meet My Team Maintenance & Trust
Maintenance Signals
Community Trust
Meet My Team Alternatives
Team – Team Members Showcase Plugin
tlp-team
WordPress team plugin to showcase team members with grid, slider, and filterable layouts. Fully compatible with Elementor & Gutenberg.
Team Builder – Team Member Showcase With Grid and slider, Compatible With Elementor, Gutenberg
team-builder
Team Plugin comes with 6 Design Layout with Add unlimited Team Members. Grid Team and slider layout with Drag & Drop Builder, Easily add and delet …
Team Members – Multi Language Supported Team Plugin
team-showcase-supreme
Multi-language supported Team Members - Team with Slide is the best plugins to display unlimited team in Carouse and Grid view.
Responsive Team Members Showcase, Team Grid, Team Slider, and Staff List – SmartTeam (formerly WP Team)
team-free
A WordPress plugin to display team members in Carousel, Grid, or List layouts. Customizable.
Team Members Showcase
wps-team
WordPress Team Members Showcase plugin – display staff or team profiles in grids, sliders, tables, or lists with filters, popups, drawers & panels.
Meet My Team Developer Profile
13 plugins · 79K total installs
How We Detect Meet My Team
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/meet-my-team/css/admin.css/wp-content/plugins/meet-my-team/js/admin.js/wp-content/plugins/meet-my-team/vendor/autoload.php/wp-content/plugins/meet-my-team/admin/class-meet-my-team-admin.php/wp-content/plugins/meet-my-team/public/class-meet-my-team.php/wp-content/plugins/meet-my-team/admin/includes/class-meet-my-team-build-cpt.php/wp-content/plugins/meet-my-team/admin/views/admin.phpmeet-my-team/meet-my-team.phpmeet-my-team-admin-stylesmeet-my-team-admin-scriptHTML / DOM Fingerprints
<!-- Meet My Team --><!-- Build Custom Posts --><!-- Build Custom Post Type --><!-- Build the metaboxes -->+12 morename="meet-my-team-settings"value="Meet My Team"Meet_My_Team.VERSION