
RSVPMaker for Toastmasters Security & Risk Analysis
wordpress.org/plugins/rsvpmaker-for-toastmastersThis Toastmasters-specific extension to the RSVPMaker events plugin adds role signups and member performance tracking.
Is RSVPMaker for Toastmasters Safe to Use in 2026?
Generally Safe
Score 97/100RSVPMaker for Toastmasters has a strong security track record. Known vulnerabilities have been patched promptly.
The rsvpmaker-for-toastmasters plugin presents a mixed security posture. While it demonstrates some good practices, such as a high percentage of prepared SQL statements and a substantial number of nonce and capability checks, significant concerns remain. The presence of a critical historical CVE for unrestricted file uploads with dangerous types, even if currently patched, suggests a past tendency towards vulnerabilities that could be exploited again. The static analysis reveals a notable attack surface with 5 out of 24 entry points lacking authentication checks, including AJAX handlers. Furthermore, 10 high-severity taint flows were identified, indicating potential pathways for malicious data to be processed without adequate sanitization. The use of `unserialize` is also a red flag, as it can lead to object injection vulnerabilities if not handled with extreme care, especially when dealing with user-supplied data.
Key Concerns
- Unauthenticated AJAX handlers present
- High severity taint flows found
- Use of unserialize function
- Historical critical CVE
- Flows with unsanitized paths
RSVPMaker for Toastmasters Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
RSVPMaker for Toastmasters <= 6.2.4 - Unauthenticated Arbitrary File Upload
RSVPMaker for Toastmasters Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
RSVPMaker for Toastmasters Attack Surface
AJAX Handlers 10
Shortcodes 14
WordPress Hooks 131
Scheduled Events 5
Maintenance & Trust
RSVPMaker for Toastmasters Maintenance & Trust
Maintenance Signals
Community Trust
RSVPMaker for Toastmasters Alternatives
No alternatives data available yet.
RSVPMaker for Toastmasters Developer Profile
10 plugins · 490 total installs
How We Detect RSVPMaker for Toastmasters
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/rsvpmaker-for-toastmasters/agenda/build/frontend.js/wp-content/plugins/rsvpmaker-for-toastmasters/build/index.js/wp-content/plugins/rsvpmaker-for-toastmasters/build/style-index.css/wp-content/plugins/rsvpmaker-for-toastmasters/dist/toastmasters-dynamic-agenda.css/wp-content/plugins/rsvpmaker-for-toastmasters/dist/toastmasters-dynamic-agenda.js/wp-content/plugins/rsvpmaker-for-toastmasters/agenda/build/frontend.jsrsvpmaker-for-toastmasters/css/toastmasters.css?ver=rsvpmaker-for-toastmasters/css/toastmasters.min.css?ver=rsvpmaker-for-toastmasters/dist/toastmasters-dynamic-agenda.css?ver=rsvpmaker-for-toastmasters/dist/toastmasters-dynamic-agenda.js?ver=rsvpmaker-for-toastmasters/build/index.js?ver=rsvpmaker-for-toastmasters/build/style-index.css?ver=HTML / DOM Fingerprints
wp-block-wp4toastmasters-toastmasters-dynamic-agendatoastmasters-dynamic-agenda-view-scriptwp4toastmasters-toastmasters-dynamic-agenda-view-scriptwp4t-rsvplistwp4t-rolewp4t-agendanoterich2wp4t-signupnotewp4t-agendaedit+16 more<!-- excluded on specified sites --><!--end excluded actions--><!-- disable within WordPress Playground -->data-block="toastmasters-dynamic-agenda"data-roledata-agenda-rolewpt_restrsvpmaker_settingsrsvpmaker_defaultsToastmasters/wp-json/wp4t/v2/getroles/wp-json/wp4t/v2/getmeetingroles/wp-json/wp4t/v2/getagendatemplates/wp-json/wp4t/v2/getagenda/wp-json/wp4t/v2/addmeeting/wp-json/wp4t/v2/deleteagendaitem/wp-json/wp4t/v2/saveagendaitem/wp-json/wp4t/v2/saveagenda/wp-json/wp4t/v2/updateagendatimes/wp-json/wp4t/v2/getagendalog/wp-json/wp4t/v2/savetemplate/wp-json/wp4t/v2/getroles/wp-json/wp4t/v2/getmeetingroles/wp-json/wp4t/v2/getagendatemplates/wp-json/wp4t/v2/getagenda/wp-json/wp4t/v2/addmeeting/wp-json/wp4t/v2/deleteagendaitem/wp-json/wp4t/v2/saveagendaitem/wp-json/wp4t/v2/saveagenda/wp-json/wp4t/v2/updateagendatimes/wp-json/wp4t/v2/getagendalog/wp-json/wp4t/v2/savetemplate[toastmasters_dynamic_agenda][rsvplist][role][agendanoterich2]