افزونه پیامک ووکامرس و وردپرس نیر وب Security & Risk Analysis

wordpress.org/plugins/nirweb-smart-sms

افزونه پیامک ووکامرس و ورودپرس | با این افزونه میتوانید انواع اطلاع رسانی های پیامکی برای ووکامرس و وردپرس خود داشته باشید.

40 active installs v1.0.1 PHP 7.2+ WP 5.2+ Updated Jun 29, 2022
sms%d9%be%db%8c%d8%a7%d9%85%da%a9woocommerce-sms%d8%a7%d9%81%d8%b2%d9%88%d9%86%d9%87-%d9%be%db%8c%d8%a7%d9%85%da%a9-%d9%88%d9%88%da%a9%d8%a7%d9%85%d8%b1%d8%b3
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is افزونه پیامک ووکامرس و وردپرس نیر وب Safe to Use in 2026?

Generally Safe

Score 85/100

افزونه پیامک ووکامرس و وردپرس نیر وب has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The "nirweb-smart-sms" v1.0.1 plugin exhibits a generally strong security posture, with no recorded vulnerabilities or critical issues found in static and taint analysis. The plugin demonstrates good practices by implementing nonce checks on all its AJAX handlers and by utilizing prepared statements for a high percentage (82%) of its SQL queries. Furthermore, a significant portion of its output (85%) is properly escaped, and there are no instances of file operations or unsanitized paths identified in the taint analysis. The plugin's attack surface, consisting of AJAX handlers and shortcodes, is fully protected by authentication or permission checks, which is a positive indicator. The external HTTP requests and bundled Select2 library are areas that warrant attention, although no immediate vulnerabilities are suggested by the provided data. The absence of any past vulnerabilities further strengthens its security reputation. Overall, this plugin appears to be developed with security in mind, but ongoing vigilance regarding external dependencies and code updates is always recommended.

Key Concerns

  • 82% of SQL queries use prepared statements
  • 85% of outputs are properly escaped
  • Bundled Select2 library
  • 3 external HTTP requests
Vulnerabilities
None known

افزونه پیامک ووکامرس و وردپرس نیر وب Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

افزونه پیامک ووکامرس و وردپرس نیر وب Release Timeline

No version history available.
Code Analysis
Analyzed Mar 16, 2026

افزونه پیامک ووکامرس و وردپرس نیر وب Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
14 prepared
Unescaped Output
57
330 escaped
Nonce Checks
9
Capability Checks
2
File Operations
0
External Requests
3
Bundled Libraries
1

Bundled Libraries

Select2

SQL Query Safety

82% prepared17 total queries

Output Escaping

85% escaped387 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

6 flows
nirweb_smart_sms_save_phone (core\core.php:112)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

افزونه پیامک ووکامرس و وردپرس نیر وب Attack Surface

Entry Points11
Unprotected0

AJAX Handlers 9

authwp_ajax_nirweb_smart_sms_save_phonecore\core.php:110
noprivwp_ajax_nirweb_smart_sms_save_phonecore\core.php:111
authwp_ajax_nirweb_smart_sms_save_phone_salecore\core.php:175
noprivwp_ajax_nirweb_smart_sms_save_phone_salecore\core.php:176
authwp_ajax_csf-get-iconsoption\functions\actions.php:50
authwp_ajax_csf-exportoption\functions\actions.php:87
authwp_ajax_csf-importoption\functions\actions.php:123
authwp_ajax_csf-resetoption\functions\actions.php:150
authwp_ajax_csf-chosenoption\functions\actions.php:189

Shortcodes 2

[in_stock_nirweb] inc\woocommerce.php:273
[on_sale_nirweb] inc\woocommerce.php:286
WordPress Hooks 37
actionadmin_initcore\core.php:6
actionadmin_initcore\core.php:26
actionadd_meta_boxescore\core.php:238
actionsave_postcore\core.php:268
actionadmin_menucore\core.php:307
actionadmin_menucore\core.php:853
actionwp_enqueue_scriptscore\includes.php:15
actionadmin_enqueue_scriptscore\includes.php:29
actionwoocommerce_thankyouinc\woocommerce.php:8
actionwoocommerce_order_status_processinginc\woocommerce.php:44
actionwoocommerce_order_status_completedinc\woocommerce.php:80
actionwoocommerce_order_status_refundedinc\woocommerce.php:117
actionwoocommerce_order_status_failedinc\woocommerce.php:153
actionwoocommerce_order_status_cancelledinc\woocommerce.php:190
filterwoocommerce_email_recipient_low_stockinc\woocommerce.php:227
filterwoocommerce_email_recipient_no_stockinc\woocommerce.php:247
actionwoocommerce_product_thumbnailsinc\woocommerce.php:269
actionwoocommerce_after_single_product_summaryinc\woocommerce.php:271
actionwoocommerce_product_thumbnailsinc\woocommerce.php:282
actionwoocommerce_after_single_product_summaryinc\woocommerce.php:284
actionwpcf7_before_send_mailinc\wp.php:7
actionlearndash_course_completedinc\wp.php:23
actionplugins_loadednirweb-smart-sms.php:27
actionwp_enqueue_scriptsoption\classes\abstract.class.php:20
actionadmin_menuoption\classes\admin-options.class.php:107
actionadmin_bar_menuoption\classes\admin-options.class.php:108
actionnetwork_admin_menuoption\classes\admin-options.class.php:112
filteradmin_footer_textoption\classes\admin-options.class.php:507
actionafter_setup_themeoption\classes\setup.class.php:70
actioninitoption\classes\setup.class.php:71
actionswitch_themeoption\classes\setup.class.php:72
actionadmin_enqueue_scriptsoption\classes\setup.class.php:73
actionwp_headoption\classes\setup.class.php:74
filteradmin_body_classoption\classes\setup.class.php:75
actionadmin_menuoption\views\welcome.php:19
filterplugin_action_linksoption\views\welcome.php:20
filterplugin_row_metaoption\views\welcome.php:21
Maintenance & Trust

افزونه پیامک ووکامرس و وردپرس نیر وب Maintenance & Trust

Maintenance Signals

WordPress version tested6.0.11
Last updatedJun 29, 2022
PHP min version7.2
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

افزونه پیامک ووکامرس و وردپرس نیر وب Developer Profile

NirWp Team

2 plugins · 1K total installs

59
trust score
Avg Security Score
72/100
Avg Patch Time
631 days
View full developer profile
Detection Fingerprints

How We Detect افزونه پیامک ووکامرس و وردپرس نیر وب

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/nirweb-smart-sms/assets/style.css/wp-content/plugins/nirweb-smart-sms/assets/scripts.js/wp-content/plugins/nirweb-smart-sms/assets/admin.css/wp-content/plugins/nirweb-smart-sms/assets/select2.min.css/wp-content/plugins/nirweb-smart-sms/assets/select2.min.js/wp-content/plugins/nirweb-smart-sms/assets/admin.js
Script Paths
/wp-content/plugins/nirweb-smart-sms/assets/scripts.js/wp-content/plugins/nirweb-smart-sms/assets/select2.min.js/wp-content/plugins/nirweb-smart-sms/assets/admin.js
Version Parameters
nirweb-smart-sms/assets/style.css?ver=nirweb-smart-sms/assets/scripts.js?ver=nirweb-smart-sms/assets/admin.css?ver=nirweb-smart-sms/assets/select2.min.css?ver=nirweb-smart-sms/assets/select2.min.js?ver=nirweb-smart-sms/assets/admin.js?ver=

HTML / DOM Fingerprints

JS Globals
nirweb_smart_sms_js
FAQ

Frequently Asked Questions about افزونه پیامک ووکامرس و وردپرس نیر وب