
Selldorado Mastertag Security & Risk Analysis
wordpress.org/plugins/selldorado-mastertagSelldorado’s module installs automatically on your e-commerce shop the technical elements required to launch campaigns on Selldorado.
Is Selldorado Mastertag Safe to Use in 2026?
Generally Safe
Score 85/100Selldorado Mastertag has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "selldorado-mastertag" v20180606 plugin indicates a generally strong security posture. The plugin demonstrates good practices by utilizing prepared statements for all SQL queries and implementing capability checks. Furthermore, the absence of known CVEs and a clean vulnerability history suggest a commitment to security or a lack of exploitable weaknesses discovered so far. The very limited attack surface, with no detected AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces the potential for external attacks.
However, the analysis does raise some concerns, primarily around output escaping. With only 5% of the 19 detected outputs being properly escaped, there's a significant risk of Cross-Site Scripting (XSS) vulnerabilities. While there are no identified taint flows or dangerous functions, and file operations and external HTTP requests are absent, the lack of robust output sanitization is a notable weakness. The absence of nonce checks, while not directly tied to an identified attack vector in this analysis, is a missed opportunity for enhanced security, particularly if the plugin were to expose new entry points in the future.
In conclusion, the "selldorado-mastertag" plugin has several security strengths, including secure SQL handling and a minimal attack surface. Its clean vulnerability history is also positive. The most significant area for improvement and a clear security concern is the insufficient output escaping, which presents a tangible risk of XSS vulnerabilities. Addressing this weakness should be a priority to further strengthen the plugin's overall security.
Key Concerns
- Insufficient output escaping
- Missing nonce checks
Selldorado Mastertag Security Vulnerabilities
Selldorado Mastertag Release Timeline
Selldorado Mastertag Code Analysis
Output Escaping
Selldorado Mastertag Attack Surface
WordPress Hooks 6
Maintenance & Trust
Selldorado Mastertag Maintenance & Trust
Maintenance Signals
Community Trust
Selldorado Mastertag Alternatives
dLocal Go Payments
dlocal-go-payments-for-woocommerce
Accept dLocal Go payment methods in your WooCommerce store.
PayPal Checkout Payment for WooCommerce in Japan
pp-express-wc4jp
Accept PayPal, Credit Cards and Debit Cards on your WooCommerce store.
Slim CD payment gateway
slimcd-payment-gateway
Accept credit card/check payments for woocommerce stores, using your own merchant account.
PayEx WooCommerce Checkout
payex-woocommerce-checkout
This plugin provides the PayEx Checkout for WooCommerce.
PayEx WooCommerce Payments
payex-woocommerce-payments
This plugin provides the PayEx Payment Gateway for WooCommerce.
Selldorado Mastertag Developer Profile
1 plugin · 10 total installs
How We Detect Selldorado Mastertag
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/selldorado-mastertag/js/selldorado-mastertag-front.js/wp-content/plugins/selldorado-mastertag/css/selldorado-mastertag-front.cssselldorado-mastertag/js/selldorado-mastertag-front.js?ver=selldorado-mastertag/css/selldorado-mastertag-front.css?ver=