Music Smartlink Maker & Concerts Security & Risk Analysis

wordpress.org/plugins/music-smartlink-maker

Complete solution for Music Smartlinks and Concerts management.

20 active installs v2.0.4 PHP 7.4+ WP 6.0+ Updated Mar 11, 2026
artist-marketingconcertmusicsmartlinktour-dates
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Music Smartlink Maker & Concerts Safe to Use in 2026?

Generally Safe

Score 100/100

Music Smartlink Maker & Concerts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 24d ago
Risk Assessment

The "music-smartlink-maker" v2.0.4 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any critical or high-severity taint flows, along with the secure handling of SQL queries through prepared statements, indicates good development practices in these areas. The plugin also demonstrates awareness of security by implementing nonce and capability checks on several functions, and a high percentage of output is properly escaped, which mitigates common Cross-Site Scripting (XSS) vulnerabilities. Furthermore, the lack of any recorded vulnerabilities or CVEs in its history suggests a stable and well-maintained codebase.

However, a few areas warrant attention. While the total attack surface is small, the presence of a shortcode without explicit authentication checks is a potential entry point, though its impact is likely limited given the overall lack of other vulnerabilities. The existence of one file operation, even if not flagged as problematic in the taint analysis, introduces a minor risk that should be continuously monitored. The 86% output escaping, while good, means that 14% of outputs are not properly escaped, leaving a small window for potential XSS issues depending on the nature of these unescaped outputs and the data they handle.

In conclusion, "music-smartlink-maker" v2.0.4 appears to be a secure plugin with a history of good security performance. The identified areas for improvement are minor and do not currently suggest a significant risk. Continued vigilance in ensuring all outputs are escaped and monitoring the file operation and shortcode usage will further enhance its security.

Key Concerns

  • Unescaped output (14% of outputs)
  • Shortcode without explicit auth checks
  • File operation present
Vulnerabilities
None known

Music Smartlink Maker & Concerts Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Music Smartlink Maker & Concerts Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
51
303 escaped
Nonce Checks
2
Capability Checks
4
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped354 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
save (includes\class-mslm-admin.php:663)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Music Smartlink Maker & Concerts Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[mslm_concerts] includes\class-mslm-concerts-shortcode.php:11
WordPress Hooks 16
actionadd_meta_boxesincludes\class-mslm-admin.php:11
actionsave_postincludes\class-mslm-admin.php:12
actionadmin_enqueue_scriptsincludes\class-mslm-admin.php:13
actionall_admin_noticesincludes\class-mslm-admin.php:16
filtermanage_concert_posts_columnsincludes\class-mslm-admin.php:19
actionmanage_concert_posts_custom_columnincludes\class-mslm-admin.php:20
filtermanage_edit-concert_sortable_columnsincludes\class-mslm-admin.php:21
actionpre_get_postsincludes\class-mslm-admin.php:22
actionadmin_menuincludes\class-mslm-admin.php:24
actionadmin_noticesincludes\class-mslm-admin.php:27
actionadmin_initincludes\class-mslm-admin.php:30
actioninitincludes\class-mslm-concerts-cpt.php:11
actioninitincludes\class-mslm-cpt.php:11
actionplugins_loadedmusic-smartlink-maker.php:32
filtertemplate_includemusic-smartlink-maker.php:58
filterelementor/theme/do_locationmusic-smartlink-maker.php:89
Maintenance & Trust

Music Smartlink Maker & Concerts Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 11, 2026
PHP min version7.4
Downloads399

Community Trust

Rating60/100
Number of ratings1
Active installs20
Developer Profile

Music Smartlink Maker & Concerts Developer Profile

Widget

1 plugin · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Music Smartlink Maker & Concerts

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/music-smartlink-maker/admin/css/admin.css/wp-content/plugins/music-smartlink-maker/admin/js/admin.js/wp-content/plugins/music-smartlink-maker/assets/css/frontend.css/wp-content/plugins/music-smartlink-maker/assets/js/frontend.js
Script Paths
/wp-content/plugins/music-smartlink-maker/admin/js/admin.js/wp-content/plugins/music-smartlink-maker/assets/js/frontend.js
Version Parameters
music-smartlink-maker/admin/css/admin.css?ver=music-smartlink-maker/admin/js/admin.js?ver=music-smartlink-maker/assets/css/frontend.css?ver=music-smartlink-maker/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
mslm-color-field
Data Attributes
data-default-color
Shortcode Output
[mslm_concerts count="10" title="Upcoming Concerts"]
FAQ

Frequently Asked Questions about Music Smartlink Maker & Concerts