
نوار اطلاع رسانی | ایمن وب Security & Risk Analysis
wordpress.org/plugins/plugin-notification-barنمایش نوار اطلاع رسانی در سایت با سفارشی سازی کامل
Is نوار اطلاع رسانی | ایمن وب Safe to Use in 2026?
Generally Safe
Score 85/100نوار اطلاع رسانی | ایمن وب has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "plugin-notification-bar" v1.4 exhibits a generally good security posture, with no recorded vulnerabilities or CVEs in its history. The static analysis reveals a minimal attack surface with zero entry points that are unprotected, and the code adheres to good practices like using prepared statements for all SQL queries and proper output escaping for the vast majority of outputs. There are no dangerous functions, file operations, or external HTTP requests, further contributing to a low-risk profile.
However, the taint analysis identified two flows with unsanitized paths. While these are not classified as critical or high severity, they represent a potential area of concern. The complete absence of nonce checks and capability checks across all identified code signals is a significant weakness. This lack of authentication and authorization checks on potential entry points, even though they are currently zero in number, means that if new entry points are introduced or if the existing ones are somehow exposed, they would be vulnerable to unauthorized access or manipulation. The plugin's history of no vulnerabilities might be due to its limited functionality or a lack of targeted attacks rather than inherent robust security.
In conclusion, "plugin-notification-bar" v1.4 is in a relatively strong security position due to its clean history and adherence to several security best practices. The primary weaknesses lie in the presence of unsanitized taint flows and the complete lack of nonce and capability checks, which represent potential vulnerabilities that could be exploited if the attack surface were to expand or change. Addressing these specific points would further enhance the plugin's security.
Key Concerns
- Taint flow with unsanitized path (2 instances)
- No nonce checks
- No capability checks
- Unescaped output (5% of outputs)
نوار اطلاع رسانی | ایمن وب Security Vulnerabilities
نوار اطلاع رسانی | ایمن وب Release Timeline
نوار اطلاع رسانی | ایمن وب Code Analysis
Output Escaping
Data Flow Analysis
نوار اطلاع رسانی | ایمن وب Attack Surface
WordPress Hooks 4
Maintenance & Trust
نوار اطلاع رسانی | ایمن وب Maintenance & Trust
Maintenance Signals
Community Trust
نوار اطلاع رسانی | ایمن وب Alternatives
My Sticky Bar – Floating Notification Bar & Sticky Header (formerly myStickymenu)
mystickymenu
Create a welcome notification bar for your website. Also, My Sticky Bar plugin can make your menu or header sticky to the top when scrolled 📌
WPFront Notification Bar
wpfront-notification-bar
Easily lets you create a bar on top or bottom to display a notification.
NotificationX – FOMO, Live Sales Notification, WooCommerce Sales Popup, GDPR, Social Proof, Announcement Banner & Floating Notification Bar
notificationx
Want to boost business trust & conversions? 97% of visitors hesitate to buy because of credibility. Instantly succeed with WooCommerce Sales Alert!
Top Bar
top-bar
Simply the easiest way to add a topbar to your website. Create a notification bar in no-time and show a message and a button to your visitors.
Announcer – Sticky Message Banner & Notification Bar
announcer
Add customizable WordPress notification bar to display announcements, promotions, coupons, or news at the top or bottom of your website.
نوار اطلاع رسانی | ایمن وب Developer Profile
1 plugin · 10 total installs
How We Detect نوار اطلاع رسانی | ایمن وب
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/plugin-notification-bar/notification-bar-style.css/wp-content/plugins/plugin-notification-bar/close.png/wp-content/plugins/plugin-notification-bar/notification-bar-script.jsplugin-notification-bar/notification-bar-style.css?ver=plugin-notification-bar/notification-bar-script.js?ver=HTML / DOM Fingerprints
id="notification_bar"