
SKP WP Admin Login Captcha Security & Risk Analysis
wordpress.org/plugins/sk-wp-admin-login-captchaAdd Google or Mathematical captcha on wordpress login page
Is SKP WP Admin Login Captcha Safe to Use in 2026?
Generally Safe
Score 100/100SKP WP Admin Login Captcha has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "sk-wp-admin-login-captcha" v1.0.5 exhibits a mixed security posture. On the positive side, there are no known CVEs associated with this plugin, and all observed SQL queries are properly prepared, indicating good practices in database interaction. Furthermore, the attack surface appears to be minimal, with no registered AJAX handlers, REST API routes, shortcodes, or cron events that could serve as direct entry points for attackers.
However, several concerning signals are present in the static analysis. The use of the `create_function` is a significant red flag, as it can be exploited for code injection vulnerabilities. While no specific taint flows were classified as critical or high, the presence of two flows with unsanitized paths suggests potential issues with how data is handled, which could lead to vulnerabilities if exploited in conjunction with other weaknesses. A notable concern is the complete lack of nonce and capability checks, meaning that even if there were entry points, they would likely be unprotected against common WordPress attacks.
Given the absence of a vulnerability history, it's difficult to draw strong conclusions about past security practices, but the lack of reported issues could indicate either good security or limited historical scrutiny. The primary strengths of this plugin lie in its minimal attack surface and secure SQL handling. The main weaknesses are the presence of a dangerous function and the complete absence of crucial security checks like nonces and capability checks.
Key Concerns
- Use of dangerous function 'create_function'
- Flows with unsanitized paths found
- No nonce checks implemented
- No capability checks implemented
- Low percentage of properly escaped output
SKP WP Admin Login Captcha Security Vulnerabilities
SKP WP Admin Login Captcha Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
SKP WP Admin Login Captcha Attack Surface
WordPress Hooks 12
Maintenance & Trust
SKP WP Admin Login Captcha Maintenance & Trust
Maintenance Signals
Community Trust
SKP WP Admin Login Captcha Alternatives
Captcha Code
captcha-code-authentication
GDPR compatible captcha anti-spam protection for login form, comments form, registration form & lost password form. Eliminate spam with captcha.
DS CF7 Math Captcha
ds-cf7-math-captcha
"DS CF7 Math Captcha" is a math captcha with refresh captcha functionality to prevent unwanted spam for your contact form 7 plugin.
Contact Form 7 Spam Killer
cf7-advance-security
"Contact Form 7 Spam Killer" is a advance spam blocker that will help to prevent unwanted spam for your Contact Form 7 plugin.
Math Captcha for Elementor Forms
math-captcha-for-elementor-forms
Wordpress Plugin that will add a simple match captcha to your Elementor Forms.
CF7 Google Captcha Load After Page
cf7-google-captcha-load-after-page
This plugins use for your website speed improvement and decrease your page request. When you have used contact form 7 and insert you Google Captcha( v …
SKP WP Admin Login Captcha Developer Profile
2 plugins · 1K total installs
How We Detect SKP WP Admin Login Captcha
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sk-wp-admin-login-captcha/admin/css/skwpalc-admin.css/wp-content/plugins/sk-wp-admin-login-captcha/admin/css/skwpalc-responsiveslides.css/wp-content/plugins/sk-wp-admin-login-captcha/admin/js/skwpalc-responsiveslides.min.js/wp-content/plugins/sk-wp-admin-login-captcha/admin/js/skwpalc-admin.jssk-wp-admin-login-captcha/admin/css/skwpalc-admin.css?ver=sk-wp-admin-login-captcha/admin/css/skwpalc-responsiveslides.css?ver=sk-wp-admin-login-captcha/admin/js/skwpalc-responsiveslides.min.js?ver=sk-wp-admin-login-captcha/admin/js/skwpalc-admin.js?ver=HTML / DOM Fingerprints
skwpalc-slider