
Mobile APP Dashboard Custom Fields Json API Security & Risk Analysis
wordpress.org/plugins/mobile-app-dashboard-custom-fields-json-apiPlugin for provide Configuration page or Dashboard for your mobile APP so you can add custom fields as many as you want and get data in Jason API.
Is Mobile APP Dashboard Custom Fields Json API Safe to Use in 2026?
Generally Safe
Score 85/100Mobile APP Dashboard Custom Fields Json API has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "mobile-app-dashboard-custom-fields-json-api" v1.1 exhibits a concerning security posture despite having no recorded vulnerabilities or apparent attack surface through common entry points like AJAX, REST API, or shortcodes. The static analysis reveals significant weaknesses, particularly in data handling. All SQL queries (3 in total) are executed without prepared statements, a major risk for SQL injection vulnerabilities. Furthermore, none of the 14 identified output operations are properly escaped, creating a high probability of Cross-Site Scripting (XSS) attacks. The taint analysis highlights one flow with unsanitized paths, classified as high severity, which strongly suggests a pathway for malicious data to be processed without adequate sanitization. While the absence of external HTTP requests and file operations is a positive sign, the lack of capability checks and nonce checks on potential backend operations, combined with the unescaped outputs and raw SQL, presents substantial risks. The plugin's history of zero CVEs is positive but cannot be relied upon given the current code analysis findings. It's crucial to address the identified SQL and output escaping issues proactively.
Key Concerns
- Raw SQL queries without prepared statements
- No output escaping
- High severity unsanitized taint flow
- No nonce checks
- No capability checks
Mobile APP Dashboard Custom Fields Json API Security Vulnerabilities
Mobile APP Dashboard Custom Fields Json API Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Mobile APP Dashboard Custom Fields Json API Attack Surface
WordPress Hooks 6
Maintenance & Trust
Mobile APP Dashboard Custom Fields Json API Maintenance & Trust
Maintenance Signals
Community Trust
Mobile APP Dashboard Custom Fields Json API Alternatives
REST API Helper
rest-api-helper
This plugin help REST API for display featured media source, author, categories, and custom fields.
Admin Menu Slide
admin-menu-slide
Adds a feature to hide admin menu and make it slide when hovering on the edge of the screen.
MonsterInsights – Google Analytics Dashboard for WordPress (Website Stats Made Easy)
google-analytics-for-wordpress
The best free Google Analytics plugin for WordPress. See how visitors find and use your website so you can grow your business with powerful analytics.
Admin Menu Editor
admin-menu-editor
Lets you edit the WordPress admin menu. You can re-order, hide or rename menus, add custom menus and more.
AMP
amp
An easier path to great Page Experience for everyone. Powered by AMP.
Mobile APP Dashboard Custom Fields Json API Developer Profile
3 plugins · 620 total installs
How We Detect Mobile APP Dashboard Custom Fields Json API
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mobile-app-dashboard-custom-fields-json-api/css/app_admin_style.css/wp-content/plugins/mobile-app-dashboard-custom-fields-json-api/js/app_admin_js.js/wp-content/plugins/mobile-app-dashboard-custom-fields-json-api/js/app_admin_js.jsmobile-app-dashboard-custom-fields-json-api/css/app_admin_style.css?ver=1.0.0mobile-app-dashboard-custom-fields-json-api/js/app_admin_js.js