WP Courseware for MemberMouse Security & Risk Analysis

wordpress.org/plugins/membermouse-addon-for-wp-courseware

Integrate MemberMouse with WP Courseware to link courses to membership levels or bundles for seamless automatic enrollment.

20 active installs v1.10 PHP + WP 4.8+ Updated Nov 22, 2024
course-builderlearning-management-system
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP Courseware for MemberMouse Safe to Use in 2026?

Generally Safe

Score 92/100

WP Courseware for MemberMouse has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

Based on the static analysis, this plugin exhibits a generally strong security posture. The absence of any registered attack surface points, such as AJAX handlers, REST API routes, shortcodes, or cron events, significantly limits potential entry vectors for attackers. Furthermore, the fact that all SQL queries utilize prepared statements is a commendable practice that mitigates SQL injection risks.

However, the analysis does reveal a critical weakness: 100% of the identified output operations are not properly escaped. This presents a significant risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected into the website and executed in users' browsers. The lack of any recorded vulnerability history or CVEs is positive, suggesting a history of secure development or effective patching, but it does not negate the immediate risk posed by the unescaped output.

In conclusion, while the plugin's architecture and SQL handling are secure, the complete lack of output escaping is a major concern that needs immediate attention. This makes the plugin susceptible to XSS attacks, which can have severe consequences for website security and user trust. Addressing the output escaping issue should be the top priority to improve the overall security of this plugin.

Key Concerns

  • Output not properly escaped
Vulnerabilities
None known

WP Courseware for MemberMouse Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WP Courseware for MemberMouse Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
18 prepared
Unescaped Output
2
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared18 total queries

Output Escaping

0% escaped2 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<class_members.inc> (class_members.inc.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

WP Courseware for MemberMouse Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 12
filterwpcw_extensions_ignore_new_userclass_members.inc.php:54
filterwpcw_extensions_menu_itemsclass_members.inc.php:57
filterwpcw_extensions_access_control_overrideclass_members.inc.php:60
actionadmin_noticesclass_members.inc.php:400
actionadmin_noticesclass_members.inc.php:419
actioninitwp-courseware-member-mouse.php:33
actionmm_member_addwp-courseware-member-mouse.php:121
actionmm_member_membership_changewp-courseware-member-mouse.php:122
actionmm_member_deletewp-courseware-member-mouse.php:123
actionmm_bundles_addwp-courseware-member-mouse.php:124
actionmm_bundles_status_changewp-courseware-member-mouse.php:125
filterwpcw_courses_canuseraccesscoursewp-courseware-member-mouse.php:126
Maintenance & Trust

WP Courseware for MemberMouse Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedNov 22, 2024
PHP min version
Downloads7K

Community Trust

Rating60/100
Number of ratings2
Active installs20
Developer Profile

WP Courseware for MemberMouse Developer Profile

flyplugins

16 plugins · 2K total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP Courseware for MemberMouse

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/membermouse-addon-for-wp-courseware/css/membermouse-addon.css/wp-content/plugins/membermouse-addon-for-wp-courseware/js/membermouse-addon.js
Script Paths
/wp-content/plugins/membermouse-addon-for-wp-courseware/js/membermouse-addon.js
Version Parameters
membermouse-addon-for-wp-courseware/css/membermouse-addon.css?ver=membermouse-addon-for-wp-courseware/js/membermouse-addon.js?ver=

HTML / DOM Fingerprints

CSS Classes
wpcw-membermouse-settings-page
HTML Comments
<!-- MemberMouse Settings Page -->
JS Globals
WPCW_MemberMouse_Data
FAQ

Frequently Asked Questions about WP Courseware for MemberMouse