
muv – Kundenkonto Security & Risk Analysis
wordpress.org/plugins/muv-kundenkontoDieses Plugin erweitert Ihren Internet-Auftritt um die Möglichkeit, Ihren Kunden ein Kundenkonto anzubieten. Kunden können sich registrieren, anmelden …
Is muv – Kundenkonto Safe to Use in 2026?
Generally Safe
Score 85/100muv – Kundenkonto has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The muv-kundenkonto v1.5.0 plugin exhibits a generally good security posture based on the static analysis. The absence of critical or high severity taint flows, along with 100% of SQL queries using prepared statements, indicates a strong focus on preventing common database-related vulnerabilities. Furthermore, the plugin demonstrates good practice by implementing capability checks and a nonce check, safeguarding against unauthorized actions. The limited external HTTP request is also a positive sign. However, a potential area of concern is the output escaping. With approximately 31% of outputs not being properly escaped, there's a risk of Cross-Site Scripting (XSS) vulnerabilities, especially if user-supplied data is directly reflected in the output without sufficient sanitization. The presence of 6 shortcodes, while not inherently insecure, represents a larger attack surface compared to plugins with fewer entry points, and it's crucial that these are handled with robust input validation and output escaping. The plugin's vulnerability history being clean is a significant strength, suggesting a history of secure development. Overall, the plugin has a solid foundation, but the unescaped output is the most prominent risk that warrants attention.
Key Concerns
- Unescaped output found
- Multiple shortcodes increase attack surface
muv – Kundenkonto Security Vulnerabilities
muv – Kundenkonto Release Timeline
muv – Kundenkonto Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
muv – Kundenkonto Attack Surface
Shortcodes 6
WordPress Hooks 23
Scheduled Events 1
Maintenance & Trust
muv – Kundenkonto Maintenance & Trust
Maintenance Signals
Community Trust
muv – Kundenkonto Alternatives
UsersWP – ReCaptcha
userswp-recaptcha
ReCaptcha addon for UsersWP.
Frontend Dashboard
frontend-dashboard
Frontend Dashboard is bundled with huge list of custom features which can easily customise the User profile, Posts, Login, Register, Custom roles.
Custom Login Admin Front-end CSS
custom-login-admin-front-end-css-with-multisite-support
Loads custom CSS on WordPress Login Pages, Admin and Front-end via admin interface. Works on Multisites as well.
Flexible Frontend Login
flexible-frontend-login
Easily place a link to a Login Form Popup at any place of your site. Saves a lot of screen property and looks very nice.
Frontend Dashboard Captcha
frontend-dashboard-captcha
Frontend Dashboard Captcha WordPress plugin is a supportive plugin for Frontend Dashboard to protect against spam in Login and Register form.
muv – Kundenkonto Developer Profile
3 plugins · 120 total installs
How We Detect muv – Kundenkonto
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/muv-kundenkonto/vendor/public/font-awesome/css/font-awesome.min.css/wp-content/plugins/muv-kundenkonto/vendor/public/tipso/src/tipso.min.css/wp-content/plugins/muv-kundenkonto/vendor/public/tipso/src/tipso.min.js/wp-content/plugins/muv-kundenkonto/vendor/public/datatables.net/js/jquery.dataTables.min.js/wp-content/plugins/muv-kundenkonto/vendor/public/datatables.net-dt/css/jquery.dataTables.min.css/wp-content/plugins/muv-kundenkonto/assets/js/admin-common.js/wp-content/plugins/muv-kundenkonto/assets/css/admin-common.css/wp-content/plugins/muv-kundenkonto/assets/css/admin.css+3 more/wp-content/plugins/muv-kundenkonto/vendor/public/tipso/src/tipso.min.js/wp-content/plugins/muv-kundenkonto/vendor/public/datatables.net/js/jquery.dataTables.min.js/wp-content/plugins/muv-kundenkonto/assets/js/admin-common.js/wp-content/plugins/muv-kundenkonto/assets/js/admin.jsHTML / DOM Fingerprints
wp-menu-separator Zugriff nur als Plugin innerhalb von Wordpress benötigte Konstanten die interne Version-Nummer Der Dateiname (inkl. Pfad) +10 moredata-muv-kk-idMUV_KK_URLMUV_KK_NETWORK_ACTIVATED[muv_kundenkonto_registrierung][muv_kundenkonto_anmeldung][muv_kundenkonto_logout][muv_kundenkonto_profil]