
Plugin Modification Date Security & Risk Analysis
wordpress.org/plugins/plugin-modification-dateAdd tag Requires at least: 4.9 Tested up to: 5.6 Stable tag: 1.0.1 License: GPLv2 or later Displays Plugin Modification/Updation time.
Is Plugin Modification Date Safe to Use in 2026?
Generally Safe
Score 85/100Plugin Modification Date has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "plugin-modification-date" v1.0.1 plugin exhibits a generally strong security posture based on the static analysis provided. The absence of any reported vulnerabilities in its history is a significant positive indicator. Furthermore, the plugin demonstrates excellent practices by utilizing prepared statements for all SQL queries and not exposing any file operations, external HTTP requests, or bundled libraries, which are common sources of security flaws. The limited attack surface, with no reported AJAX handlers, REST API routes, shortcodes, or cron events, further contributes to its safety.
However, a critical concern arises from the complete lack of output escaping. This means that any data displayed by the plugin, if it were to originate from user input or external sources, would not be properly sanitized, leaving it vulnerable to Cross-Site Scripting (XSS) attacks. Additionally, the absence of nonce checks and capability checks, while less critical given the limited attack surface, means that any future expansion of functionality could introduce vulnerabilities if these fundamental security measures are not implemented. The lack of taint analysis flows also prevents a complete assessment of potential data manipulation risks.
Key Concerns
- No output escaping
- Missing nonce checks
- Missing capability checks
- No taint analysis performed
Plugin Modification Date Security Vulnerabilities
Plugin Modification Date Code Analysis
Output Escaping
Plugin Modification Date Attack Surface
WordPress Hooks 3
Maintenance & Trust
Plugin Modification Date Maintenance & Trust
Maintenance Signals
Community Trust
Plugin Modification Date Alternatives
Hide Dashboard Notifications
wp-hide-backed-notices
Warnings and notices can be helpful for developers as they notify them for debugging issues with their code. Though these notices can be sometimes inf …
Updater by BestWebSoft
updater
Automatically update WordPress core, plugins, themes, and translations. Schedule updates and get email notifications – no FTP needed.
Simba Plugin Updates Manager
simba-plugin-updates-manager
Provides a facility for distributing updates and handling licences and renewal reminders for your own WordPress plugins
Plugin Modification Date Developer Profile
5 plugins · 150 total installs
How We Detect Plugin Modification Date
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
column-last_modified_date