PBP Dashboard Changer Security & Risk Analysis

wordpress.org/plugins/pbp-dashboard-widget-cleaner

Change & customize your dashboard & login page easily.

10 active installs v2.2 PHP + WP 3.0+ Updated Unknown
customizecustomize-dashboarddashboardwp-dahboard-customize
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is PBP Dashboard Changer Safe to Use in 2026?

Generally Safe

Score 100/100

PBP Dashboard Changer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "pbp-dashboard-widget-cleaner" plugin v2.2 exhibits a strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events significantly limits the potential attack surface. Furthermore, the plugin demonstrates good development practices by utilizing prepared statements for all SQL queries and avoiding dangerous functions, file operations, and external HTTP requests. The taint analysis revealing no flows with unsanitized paths further reinforces this positive outlook.

However, a notable concern arises from the output escaping. With 0% of its 8 total outputs properly escaped, this presents a significant risk of Cross-Site Scripting (XSS) vulnerabilities. While the plugin has a clean vulnerability history with no recorded CVEs, the lack of output escaping could lead to the introduction of such vulnerabilities if user-supplied data were to be rendered without proper sanitization.

In conclusion, while the plugin's attack surface is minimal and it adheres to many secure coding principles, the unescaped output is a critical weakness that requires immediate attention. The lack of historical vulnerabilities is a positive indicator, but it does not negate the present risk posed by the output escaping issue. Addressing this specific vulnerability by implementing proper output escaping is crucial for maintaining a secure plugin.

Key Concerns

  • Unescaped output (8 total, 0% escaped)
Vulnerabilities
None known

PBP Dashboard Changer Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

PBP Dashboard Changer Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
0 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped8 total outputs
Attack Surface

PBP Dashboard Changer Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 24
actionadmin_initpanel.php:90
actionadmin_menupanel.php:91
actionadmin_initpanel.php:108
actionregister_formpbpdc.php:42
actionlogin_formpbpdc.php:55
actionlogin_headpbpdc.php:66
actionadmin_headpbpdc.php:78
actionadmin_headpbpdc.php:90
actionwp_dashboard_setuppbpdc.php:101
actionwp_dashboard_setuppbpdc.php:112
actionwp_dashboard_setuppbpdc.php:123
actionwp_dashboard_setuppbpdc.php:134
actionwp_dashboard_setuppbpdc.php:144
actionwp_dashboard_setuppbpdc.php:155
actionwp_dashboard_setuppbpdc.php:166
actionwp_dashboard_setuppbpdc.php:177
actioninitpbpdc.php:189
actionwp_before_admin_bar_renderpbpdc.php:200
actionwp_before_admin_bar_renderpbpdc.php:211
actionwp_before_admin_bar_renderpbpdc.php:222
actionwp_before_admin_bar_renderpbpdc.php:233
actionwp_before_admin_bar_renderpbpdc.php:244
actionwp_before_admin_bar_renderpbpdc.php:255
actionadmin_headpbpdc.php:263
Maintenance & Trust

PBP Dashboard Changer Maintenance & Trust

Maintenance Signals

WordPress version tested4.2.39
Last updatedUnknown
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

PBP Dashboard Changer Developer Profile

projoktibangla

5 plugins · 60 total installs

86
trust score
Avg Security Score
88/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect PBP Dashboard Changer

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about PBP Dashboard Changer