
SM – SQL logs Security & Risk Analysis
wordpress.org/plugins/sm-sql-logsRecord and view all SQL queries that your WordPress is requesting. Browse formated and highlighted syntax queries for debug and speedup your site.
Is SM – SQL logs Safe to Use in 2026?
Generally Safe
Score 100/100SM – SQL logs has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The sm-sql-logs plugin v1.1.1 exhibits a mixed security posture. On the positive side, the static analysis reveals no identified vulnerabilities in its history and no critical or high severity taint flows. The plugin also avoids risky operations like file manipulation or external HTTP requests, and it does not bundle any libraries. This suggests a generally cautious approach to development in these areas.
However, significant concerns arise from the lack of security checks in the code. The absence of any nonce checks, capability checks, or even authentication checks on the identified entry points (though the total is zero) is a major red flag. Furthermore, the output escaping is very poor, with only 6% of outputs being properly escaped, leaving the plugin highly susceptible to cross-site scripting (XSS) vulnerabilities if any entry points were to be discovered or if the plugin's functionality evolves. The SQL query usage is also a point of concern, with 43% of queries not using prepared statements, which could lead to SQL injection vulnerabilities.
Key Concerns
- Poor output escaping (XSS risk)
- Raw SQL queries without prepared statements
- No nonce checks
- No capability checks
SM – SQL logs Security Vulnerabilities
SM – SQL logs Code Analysis
SQL Query Safety
Output Escaping
SM – SQL logs Attack Surface
WordPress Hooks 9
Maintenance & Trust
SM – SQL logs Maintenance & Trust
Maintenance Signals
Community Trust
SM – SQL logs Alternatives
SQL Executioner
sql-executioner
Execute arbitrary SQL queries against your WordPress database from the Admin.
DbTable to DataTable
dbtable-to-datatable
Display mysql datas into datatable.
SQLog
sqlog
Log WordPress MySQL queries in csv file (and log file). Useful when you need to improve the performance or debug something.
Database Backup for WordPress
wp-db-backup
Database Backup for WordPress is your one-stop database backup solution for WordPress.
Index WP MySQL For Speed
index-wp-mysql-for-speed
Speed up your WordPress site by adding high-performance keys (database indexes) to your MariaDB / MySQL database tables.
SM – SQL logs Developer Profile
1 plugin · 10 total installs
How We Detect SM – SQL logs
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sm-sql-logs/css/sm_sql_logs-admin.css/wp-content/plugins/sm-sql-logs/js/sm_sql_logs-admin.js/wp-content/plugins/sm-sql-logs/js/sm_sql_logs-admin.jssm-sql-logs/css/sm_sql_logs-admin.css?ver=sm-sql-logs/js/sm_sql_logs-admin.js?ver=