Network Sites Counts Dashboard Widget Security & Risk Analysis

wordpress.org/plugins/network-sites-counts-dashboard-widget

Display a list of post counts for all your sites in your network.

10 active installs v1.0.0 PHP 7.4+ WP 3.5.0+ Updated Unknown
dashboard-widgetmumultisitenetworkpost-count
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Network Sites Counts Dashboard Widget Safe to Use in 2026?

Generally Safe

Score 100/100

Network Sites Counts Dashboard Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The plugin "network-sites-counts-dashboard-widget" v1.0.0 exhibits a strong adherence to several secure coding practices. The absence of any known CVEs in its history and the lack of critical or high-severity findings in static analysis, including taint analysis, are positive indicators. The plugin also shows good handling of SQL queries by exclusively using prepared statements, and no external HTTP requests or file operations are present, which reduces common attack vectors.

However, there are notable areas for improvement that present potential security concerns. The most significant issue is the complete lack of capability checks and nonce checks. This means that if any entry points were discovered or introduced in future versions, they would likely be unprotected, allowing unauthorized actions. Furthermore, the low percentage of properly escaped output (14%) suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data could be rendered directly in the browser without proper sanitization. The absence of an attack surface doesn't negate the risk associated with these fundamental security mechanisms being entirely missing.

In conclusion, while the plugin currently appears to be free of known vulnerabilities and avoids certain risky practices like raw SQL or external requests, the severe deficiencies in authentication and output escaping create a significant latent risk. Future development must prioritize implementing robust capability and nonce checks, and significantly improve output escaping to mitigate potential XSS attacks.

Key Concerns

  • No capability checks implemented
  • No nonce checks implemented
  • Low output escaping percentage (14%)
Vulnerabilities
None known

Network Sites Counts Dashboard Widget Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Network Sites Counts Dashboard Widget Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
6
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

14% escaped7 total outputs
Attack Surface

Network Sites Counts Dashboard Widget Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actioninitnetwork-sites-counts-dashboard-widget.php:38
actionadmin_initnetwork-sites-counts-dashboard-widget.php:39
actionwp_insert_sitenetwork-sites-counts-dashboard-widget.php:40
actionwp_network_dashboard_setupnetwork-sites-counts-dashboard-widget.php:58
Maintenance & Trust

Network Sites Counts Dashboard Widget Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedUnknown
PHP min version7.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Network Sites Counts Dashboard Widget Developer Profile

Michael Beckwith

9 plugins · 370 total installs

94
trust score
Avg Security Score
91/100
Avg Patch Time
1 days
View full developer profile
Detection Fingerprints

How We Detect Network Sites Counts Dashboard Widget

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/network-sites-counts-dashboard-widget/includes/Network_Sites_Counts_Data.php

HTML / DOM Fingerprints

CSS Classes
widefat
FAQ

Frequently Asked Questions about Network Sites Counts Dashboard Widget