
QR Code Login Admin Security & Risk Analysis
wordpress.org/plugins/qr-code-login-adminPermette l'accesso al tuo sito web senza inserire username e password, generando semplicemente un qr-code. Abilitato solo per gli amministratori.
Is QR Code Login Admin Safe to Use in 2026?
Generally Safe
Score 100/100QR Code Login Admin has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "qr-code-login-admin" plugin v1.0.2 exhibits a generally good security posture based on the provided static analysis. There are no identified critical or high-severity issues in taint analysis, no dangerous functions, and all SQL queries utilize prepared statements. The plugin also appears to handle output escaping reasonably well, with only one out of three outputs not being properly escaped, which is a minor concern.
However, the absence of nonce checks on AJAX handlers and REST API routes, combined with a lack of explicit capability checks on all entry points, presents a potential area of concern. While the attack surface appears limited in terms of direct entry points (AJAX, REST API, shortcodes), the presence of a cron event without clear authentication or permission checks could be exploited if it performs sensitive operations. The vulnerability history being clear of any known CVEs is a positive sign, suggesting the developers have maintained a relatively secure codebase over time. Overall, the plugin demonstrates good coding practices but could benefit from more robust authentication and authorization checks on its entry points to further mitigate potential risks.
Key Concerns
- One output not properly escaped
- Cron event potentially without auth checks
QR Code Login Admin Security Vulnerabilities
QR Code Login Admin Code Analysis
Output Escaping
QR Code Login Admin Attack Surface
WordPress Hooks 9
Scheduled Events 1
Maintenance & Trust
QR Code Login Admin Maintenance & Trust
Maintenance Signals
Community Trust
QR Code Login Admin Alternatives
Kaya QR Code Generator
kaya-qr-code-generator
Generate QR Code through Widgets and Shortcodes, without any dependencies.
UPI QR Code Payment Gateway for WooCommerce
upi-qr-code-payment-for-woocommerce
This Plugin enables WooCommerce shop owners to get direct and instant payments through UPI apps like BHIM, GooglePay, PhonePe or any banking UPI app.
Dynamic QR Code – generator
dynamic-qr-code
Allows you to generate DYNAMIC QR CODES: you can modify what happens when scanning your QR code without actually modifying (and reprinting) it.
Bangladeshi Payment Gateways – Make Payment Using QR Code
bangladeshi-payment-gateways
Bangladeshi Payment Gateways for WooCommerce.
HitPay Payment Gateway for WooCommerce
hitpay-payment-gateway
HitPay Payment Gateway Plugin allows HitPay merchants to accept PayNow QR, Cards, Apple Pay, Google Pay, WeChatPay, AliPay and GrabPay Payments.
QR Code Login Admin Developer Profile
7 plugins · 230 total installs
How We Detect QR Code Login Admin
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/qr-code-login-admin/images/qr_code_login_admin_icon.svg/wp-content/plugins/qr-code-login-admin/js/qrcode.min.jsqr-code-login-admin/js/qrcode.min.js?ver=HTML / DOM Fingerprints
qrcode-text-btnqrcode-textauto_qrcode_badgeauto_qrcode_expiredcapture=environmentqrcodeQRCode