
Namasha By Mdesign Security & Risk Analysis
wordpress.org/plugins/namasha-by-mdesignنمایش حرفه ای ویدیو های پلتفرم نماشا + آپارات در وردپرس (+ویجت المنتور و گوتنبرگ)
Is Namasha By Mdesign Safe to Use in 2026?
Generally Safe
Score 99/100Namasha By Mdesign has a strong security track record. Known vulnerabilities have been patched promptly.
The "namasha-by-mdesign" plugin v1.2.06 exhibits a mixed security posture. On the positive side, it demonstrates good practices regarding SQL queries, utilizing prepared statements exclusively, and shows no instances of file operations or external HTTP requests. The plugin also leverages TinyMCE, a common and generally well-maintained bundled library. However, significant concerns arise from the attack surface analysis, which reveals two unprotected AJAX handlers. Furthermore, the taint analysis identified one flow with unsanitized paths, although it was not classified as critical or high severity in this instance. The vulnerability history, while showing no currently unpatched CVEs, does include one past medium severity vulnerability related to Cross-site Scripting. This suggests a potential for input validation issues that require careful attention.
Key Concerns
- Unprotected AJAX handlers found
- Taint flow with unsanitized paths
- Past medium severity XSS vulnerability history
- Low percentage of properly escaped output
- Missing nonce checks on AJAX handlers
Namasha By Mdesign Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Namasha By Mdesign <= 1.2.00 - Authenticated (Contributor+) Stored Cross-Site Scripting via playicon_title Parameter
Namasha By Mdesign Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Namasha By Mdesign Attack Surface
AJAX Handlers 2
Shortcodes 2
WordPress Hooks 13
Maintenance & Trust
Namasha By Mdesign Maintenance & Trust
Maintenance Signals
Community Trust
Namasha By Mdesign Alternatives
Aparat for WordPress
wp-aparat
Displaying Aparat videos on website content, along with a widget for showing a list of channel videos.
Aparat WordPress Video Feed Plugin
aparat-feed
Easily display the latest videos from any Aparat channel on your WordPress site with a lightweight, fast and responsive Aparat video WordPress plugin.
Aparat Videos RSS Reader | GRAD
grad-aparat-rss
دریافت آر.اس.اس کانال آپارات و نمایش (به ترتیب یا تصادفی) ویدئوهای کانال آپارات، در ویجتهای وردپرس. Widgets for listing videos uploaded to Aparat.
Aparat Embed
aparat-embed
Display Aparat videos and channels in WordPress.
Aparat Video Shortcode
aparat-shortcode
Add [aparat] shortcode to WordPress for easy video sharing in WordPress
Namasha By Mdesign Developer Profile
4 plugins · 730 total installs
How We Detect Namasha By Mdesign
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/namasha-by-mdesign/admin/css/guten-styles.cssnamasha-by-mdesign/admin/css/guten-styles.css?ver=HTML / DOM Fingerprints
namashabymdz_admin_classnamasha-settingsnamashabymdz_redirect_onActivatenamashabymdz_emptyOptions_AjaxConfnoguten_nwmdz