
Zedna Ref Code Generator & Access Gate Security & Risk Analysis
wordpress.org/plugins/ref-code-generator-access-gateGenerate unique code for users to allow them to access your website.
Is Zedna Ref Code Generator & Access Gate Safe to Use in 2026?
Generally Safe
Score 100/100Zedna Ref Code Generator & Access Gate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ref-code-generator-access-gate" plugin, version 1.5, presents a mixed security posture. On the positive side, there are no known CVEs and the attack surface is minimal with only one shortcode entry point, which appears to be unprotected by authentication checks. The presence of two nonce checks is also a good sign, indicating some awareness of security best practices. However, significant concerns arise from the static analysis. The plugin uses SQL queries without prepared statements, which is a critical security flaw that can lead to SQL injection vulnerabilities. Furthermore, the output escaping is extremely poor, with only 4% of outputs properly escaped, making it susceptible to cross-site scripting (XSS) attacks. While the taint analysis did not reveal critical or high severity flows, the presence of one flow with unsanitized paths, combined with the lack of proper output escaping, is concerning.
The lack of documented vulnerabilities in its history is a strength, suggesting the plugin might have been developed with some care. However, this does not negate the risks identified in the static analysis. The plugin exhibits a concerning disregard for fundamental security practices like prepared statements and output escaping, which are essential for preventing common web application attacks. The absence of capability checks on its single entry point is also a potential oversight, though the lack of authentication checks on the AJAX handlers and REST API routes is noted as a positive. Overall, while the plugin has a small attack surface and no known CVEs, the identified code quality issues pose a substantial risk to users.
Key Concerns
- Raw SQL queries without prepared statements
- Very low percentage of properly escaped output
- Flow with unsanitized paths
- No capability checks on entry points
Zedna Ref Code Generator & Access Gate Security Vulnerabilities
Zedna Ref Code Generator & Access Gate Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Zedna Ref Code Generator & Access Gate Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
Zedna Ref Code Generator & Access Gate Maintenance & Trust
Maintenance Signals
Community Trust
Zedna Ref Code Generator & Access Gate Alternatives
WP Sitemap Page
wp-sitemap-page
Add a sitemap on any of your page using the simple shortcode [wp_sitemap_page]. Improve the SEO and navigation of your website.
Discount Rules for WooCommerce
woo-discount-rules
The discount plugin for WooCommerce helps you create bulk discount, quantity discount, storewide sale, dynamic pricing discount offers easily.
Customer Reviews for WooCommerce
customer-reviews-woocommerce
Customer Reviews for WooCommerce plugin helps you get more sales with social proof. Set up automated review reminders and increase conversion rate.
MaxButtons – Create buttons
maxbuttons
Maxbuttons is the best and easiest button plugin for WordPress. Within minutes you can create beautiful buttons, share buttons and social icons.
Payment Gateway Based Fees and Discounts for WooCommerce
checkout-fees-for-woocommerce
Set fees and discounts for WooCommerce payment gateways.
Zedna Ref Code Generator & Access Gate Developer Profile
15 plugins · 570 total installs
How We Detect Zedna Ref Code Generator & Access Gate
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ref-code-generator-access-gate/template/gate.phpHTML / DOM Fingerprints
drcg-code-list-headerorangegreencodename="ref_code_input"name="drcg_zedna_nonce_field"name="quantity"name="generate"id="quantity"window.drcg_zedna_open_gatewindow.drcg_zedna_gate_templatewindow.drcg_zedna_add_user_profile_fieldwindow.drcg_zedna_install_dbwindow.drcg_zedna_setttings_menuwindow.drcg_zedna_settings_init+5 more