
Nzymes Security & Risk Analysis
wordpress.org/plugins/nzymesBoost your posts with Nzymes injections. Safely use PHP in posts' title, excerpt, and content. WordPress 4.7+ PHP 5.6+
Is Nzymes Safe to Use in 2026?
Generally Safe
Score 85/100Nzymes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "nzymes" v1.0.0 exhibits a generally positive security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points significantly limits the potential attack surface. The lack of known vulnerabilities in its history further reinforces this. However, the presence of a dangerous function like `shell_exec` is a significant concern, as it can be exploited for remote code execution if not properly secured. Additionally, the fact that 100% of SQL queries are not using prepared statements poses a high risk of SQL injection vulnerabilities. The limited number of file operations and external HTTP requests are positive indicators, as is the fact that taint analysis yielded no concerning flows. The main strengths lie in its limited attack surface and clean vulnerability history, while the primary weaknesses stem from the direct use of dangerous functions and insecure SQL practices.
Key Concerns
- Use of dangerous function (shell_exec)
- Raw SQL queries without prepared statements
- Missing nonce checks on potential entry points
- Missing capability checks on potential entry points
- Improper output escaping
Nzymes Security Vulnerabilities
Nzymes Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Nzymes Attack Surface
WordPress Hooks 2
Maintenance & Trust
Nzymes Maintenance & Trust
Maintenance Signals
Community Trust
Nzymes Alternatives
Mundoon Taxonomy Filter Checkbox
mundoon-simple-taxonomy-filter-checkbox
Quickly create taxonomies filters for custom post types templates!
Meta Box
meta-box
Meta Box plugin is a powerful, professional developer toolkit to create custom meta boxes and custom fields for your custom post types in WordPress.
Pods – Custom Content Types and Fields
pods
Pods is a framework for creating, managing, and deploying customized content types and fields for any project.
WP Meta and Date Remover
wp-meta-and-date-remover
Remove meta author and date information from posts and pages. Hide from Humans and Search engines.SEO friendly and most advance plugin.
Sydney Toolbox
sydney-toolbox
Registers custom post types and custom fields for the Sydney theme
Nzymes Developer Profile
5 plugins · 480 total installs
How We Detect Nzymes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nzymes/admin/css/nzymes.admin.css/wp-content/plugins/nzymes/admin/js/nzymes.admin.js/wp-content/plugins/nzymes/public/css/nzymes.public.css/wp-content/plugins/nzymes/public/js/nzymes.public.js/wp-content/plugins/nzymes/admin/js/nzymes.admin.js/wp-content/plugins/nzymes/public/js/nzymes.public.jsnzymes/admin/css/nzymes.admin.css?ver=nzymes/admin/js/nzymes.admin.js?ver=nzymes/public/css/nzymes.public.css?ver=nzymes/public/js/nzymes.public.js?ver=HTML / DOM Fingerprints
<!-- Prohibit direct script loading. --><!-- Copyright 2017 Andrea Ercolino --><!-- Nzymes is free software: you can redistribute it and/or modify --><!-- it under the terms of the GNU General Public License as published by -->+72 moredata-nzymes-plugin-versionwindow.nzymes_admin