
Poll-Dude Security & Risk Analysis
wordpress.org/plugins/poll-dudeCreate the polls by generating shortcodes embedded in your posts.
Is Poll-Dude Safe to Use in 2026?
Generally Safe
Score 85/100Poll-Dude has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Poll Dude v2.0.0 plugin exhibits a generally good security posture with a clean vulnerability history. The absence of known CVEs and the presence of a robust number of nonce and capability checks for its entry points are positive indicators. The plugin also demonstrates good practice by largely employing prepared statements for its SQL queries and properly escaping a majority of its output.
However, the static analysis reveals some areas for concern. Specifically, the taint analysis indicates three high-severity flows with unsanitized paths. While these are not explicitly labeled as vulnerabilities in the history, unsanitized paths are a common precursor to security flaws and warrant careful investigation. The fact that 5 out of 9 analyzed flows had unsanitized paths is a significant red flag.
In conclusion, while Poll Dude v2.0.0 is not demonstrably vulnerable based on its history, the taint analysis findings highlight potential weaknesses that could be exploited if not addressed. The plugin's strengths lie in its adherence to WordPress security best practices for its entry points and data handling. The weaknesses are primarily in the potential for insecure data processing as identified by the taint analysis, which requires further scrutiny and remediation.
Key Concerns
- High severity unsanitized taint flows (3)
- Unsanitized paths in taint analysis (5/9 flows)
- SQL queries not using prepared statements (37%)
- Output not properly escaped (31%)
Poll-Dude Security Vulnerabilities
Poll-Dude Release Timeline
Poll-Dude Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Poll-Dude Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 6
Scheduled Events 1
Maintenance & Trust
Poll-Dude Maintenance & Trust
Maintenance Signals
Community Trust
Poll-Dude Alternatives
Kento Vote
kento-vote
Vote on Post and Display Who Voted via gravatar thumbnail.
Crowdsignal Dashboard – Polls, Surveys & more
polldaddy
Manage your Crowdsignal polls, surveys, quizzes, and ratings directly from the WordPress dashboard.
WP-Polls
wp-polls
Adds an AJAX poll system to your WordPress blog. You can also easily add a poll into your WordPress's blog post/page.
Democracy Poll
democracy-poll
WordPress polls plugin with multiple-choice, custom answers, cache compatibility, widgets, and shortcodes.
Poll Maker – Versus Polls, Anonymous Polls, Image Polls
poll-maker
Poll Maker is a FREE WordPress poll plugin that will let you create customizable and professional online polls and voting for your WordPress website.
Poll-Dude Developer Profile
6 plugins · 0 total installs
How We Detect Poll-Dude
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/poll-dude/css/poll-dude-admin.css/wp-content/plugins/poll-dude/js/poll-dude-admin.js/wp-content/plugins/poll-dude/js/lib/chart.min.jsjs/poll-dude-admin.jsjs/lib/chart.min.jspoll-dude-admin.css?ver=poll-dude-admin.js?ver=HTML / DOM Fingerprints
poll-dude<!-- Delete Polls Logs -->data-delete_logs_yesdata-dodata-noncepdAdminL10n