MilesWeb Tools Security & Risk Analysis

wordpress.org/plugins/milesweb-tools

MilesWeb Tools is a powerful WordPress plugin designed to enhance your site's functionality and security. It helps you manage security settings, …

7K active installs v1.0.2 PHP 7.4+ WP 5.6+ Updated Jul 25, 2025
maintenanceplugin-infosecuritystorage-usageuser-logging
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is MilesWeb Tools Safe to Use in 2026?

Generally Safe

Score 100/100

MilesWeb Tools has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8mo ago
Risk Assessment

The "milesweb-tools" v1.0.2 plugin exhibits a strong security posture based on the provided static analysis. The plugin demonstrates good practices by implementing nonce checks and capability checks for all identified AJAX entry points, leaving no unprotected entry points. Furthermore, the code utilizes prepared statements for all SQL queries and a high percentage of output is properly escaped, minimizing the risk of common vulnerabilities like SQL injection and Cross-Site Scripting (XSS). The absence of file operations and any critical or high-severity taint flows further strengthens its security. The plugin's vulnerability history is entirely clear, with no recorded CVEs, indicating a lack of known exploitable flaws. This suggests a diligent development process or a relatively new plugin with limited exposure. While the plugin has a small attack surface and no documented past vulnerabilities, the presence of two external HTTP requests without further context could represent a minor area of concern, as these requests could potentially be leveraged in certain attack scenarios if not handled securely by the remote endpoint.

Vulnerabilities
None known

MilesWeb Tools Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

MilesWeb Tools Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
7
129 escaped
Nonce Checks
3
Capability Checks
5
File Operations
0
External Requests
2
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

95% escaped136 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
milesweb_save_setting (includes\ajax-handler.php:8)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

MilesWeb Tools Attack Surface

Entry Points3
Unprotected0

AJAX Handlers 3

authwp_ajax_milesweb_save_settingincludes\ajax-handler.php:6
authwp_ajax_milesweb_delete_themeincludes\theme-plugin-info.php:99
authwp_ajax_milesweb_delete_pluginincludes\theme-plugin-info.php:124
WordPress Hooks 13
actionadmin_initincludes\admin-page.php:6
actionadmin_menuincludes\admin-page.php:25
actionadmin_bar_menuincludes\admin-page.php:38
actioninitincludes\https-redirect.php:6
actiontemplate_redirectincludes\maintenance-mode.php:7
actionwp_enqueue_scriptsincludes\maintenance-mode.php:8
actionwp_footerincludes\mymw-footer.php:8
filterxmlrpc_enabledincludes\security-settings.php:17
filterwp_headersincludes\security-settings.php:19
actionplugins_loadedincludes\security-settings.php:30
actionadmin_menuincludes\security-shield.php:5
actionwp_loginincludes\user-logging.php:6
actionadmin_enqueue_scriptsmilesweb.php:59
Maintenance & Trust

MilesWeb Tools Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedJul 25, 2025
PHP min version7.4
Downloads17K

Community Trust

Rating0/100
Number of ratings0
Active installs7K
Developer Profile

MilesWeb Tools Developer Profile

MilesWeb

1 plugin · 7K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect MilesWeb Tools

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/milesweb-tools/assets/css/mw-style.css/wp-content/plugins/milesweb-tools/assets/js/mw-script.js/wp-content/plugins/milesweb-tools/assets/js/chart-script.js/wp-content/plugins/milesweb-tools/assets/js/chart.js/wp-content/plugins/milesweb-tools/assets/css/maintenance-mode.css
Script Paths
/wp-content/plugins/milesweb-tools/assets/js/mw-script.js/wp-content/plugins/milesweb-tools/assets/js/chart-script.js/wp-content/plugins/milesweb-tools/assets/js/chart.js
Version Parameters
milesweb-tools/assets/css/mw-style.css?ver=milesweb-tools/assets/js/mw-script.js?ver=milesweb-tools/assets/js/chart-script.js?ver=milesweb-tools/assets/js/chart.js?ver=milesweb-tools/assets/css/maintenance-mode.css?ver=

HTML / DOM Fingerprints

CSS Classes
mainbodytagcoming-sooncoming-soon-a
Data Attributes
data-milesweb-ajax-urldata-milesweb-nonce
JS Globals
mileswebAjaxstorageData
FAQ

Frequently Asked Questions about MilesWeb Tools