
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Security & Risk Analysis
wordpress.org/plugins/shortcodes-for-buddypressThis plugin generates shortcodes for Listing Activity Streams, Members, and Groups on any website post or page.
Is Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Safe to Use in 2026?
Generally Safe
Score 100/100Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "shortcodes-for-buddypress" plugin v2.9.1 exhibits a generally good security posture with some notable areas of concern. The plugin demonstrates strong practices by exclusively using prepared statements for SQL queries and achieving a high percentage of properly escaped output. The absence of file operations, external HTTP requests, and known vulnerabilities in its history are positive indicators. However, the presence of unprotected AJAX handlers represents a significant security weakness. These entry points could be exploited by unauthenticated users to trigger plugin functionality, potentially leading to unintended consequences or providing an avenue for further attacks if not properly secured.
Key Concerns
- Unprotected AJAX handlers
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Security Vulnerabilities
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Attack Surface
AJAX Handlers 3
Shortcodes 2
WordPress Hooks 35
Maintenance & Trust
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Maintenance & Trust
Maintenance Signals
Community Trust
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Alternatives
Buddypress Avatar Hover
bp-avatar-hover
BuddyPress Avatar Hover let's you add a pop box when hovering on the group/member avatars and gives you more information at a glance.
BuddyPress Group Email Subscription
buddypress-group-email-subscription
This powerful plugin allows users to receive email notifications of group activity. Weekly or daily digests are available.
BP Local Avatars
bp-local-avatars
A BuddyPress plugin that creates Gravatar avatars for any user or group without one, and stores them locally.
BP Group Management
bp-group-management
Allows site administrators to manage group membership on versions of BuddyPress earlier than 1.7.
BuddyPress Extend Widgets
bp-extend-widgets
Provide all widgets with BuddyPress specific fields (conditional display logic)
Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress Developer Profile
19 plugins · 10K total installs
How We Detect Wbcom Designs – Shortcodes & Elementor Widgets For BuddyPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/shortcodes-for-buddypress/assets/css/frontend.css/wp-content/plugins/shortcodes-for-buddypress/assets/css/owl.carousel.min.css/wp-content/plugins/shortcodes-for-buddypress/assets/css/slick.css/wp-content/plugins/shortcodes-for-buddypress/assets/css/slick-theme.css/wp-content/plugins/shortcodes-for-buddypress/assets/js/frontend.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/owl.carousel.min.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/slick.min.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/script.js+5 more/wp-content/plugins/shortcodes-for-buddypress/assets/js/frontend.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/owl.carousel.min.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/slick.min.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/script.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/waypoints.min.js/wp-content/plugins/shortcodes-for-buddypress/assets/js/counterup.min.js+3 more/wp-content/plugins/shortcodes-for-buddypress/assets/css/frontend.css?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/css/owl.carousel.min.css?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/css/slick.css?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/css/slick-theme.css?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/frontend.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/owl.carousel.min.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/slick.min.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/script.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/waypoints.min.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/counterup.min.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/imagesloaded.min.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/isotope.min.js?ver=/wp-content/plugins/shortcodes-for-buddypress/assets/js/wbcp-public.js?ver=HTML / DOM Fingerprints
wbcp-bp-groups-sliderwbcp-bp-members-sliderwbcp-bp-activity-sliderwbcp-bp-groups-listwbcp-bp-members-listwbcp-bp-activity-listwbcp-bp-groups-gridwbcp-bp-members-grid+11 more<!-- Shortcodes for BuddyPress Plugin -->data-slickdata-owl-carouseldata-wbcp-settingswbcp_public_params[bp_members][bp_groups][bp_activity][bp_member_profile]