SMEW Comic Easel ♥ s2Member Security & Risk Analysis

wordpress.org/plugins/smew-comic-easel

s2member integration for Comic Easel for drip feeding of comic posts.

10 active installs v0.1.8 PHP + WP 3.0+ Updated Jun 9, 2017
comiccomic-easeldrip-feeds2memberwebcomic
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is SMEW Comic Easel ♥ s2Member Safe to Use in 2026?

Generally Safe

Score 85/100

SMEW Comic Easel ♥ s2Member has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "smew-comic-easel" plugin version 0.1.8 exhibits a generally good security posture in several key areas. The static analysis reveals no dangerous functions, no direct SQL queries that aren't prepared statements, no file operations, and no external HTTP requests, all of which are positive indicators. The absence of known vulnerabilities in its history further contributes to a sense of stability. However, the most significant concern arises from the extremely low percentage of properly escaped output (4%). This suggests a high likelihood of cross-site scripting (XSS) vulnerabilities, as user-supplied data or dynamic content is likely being rendered directly into the HTML without sufficient sanitization. While the plugin has capability checks, the lack of explicit nonce checks on its attack surface (though small in this case) could also be a point of weakness if any entry points were discovered that lack proper authorization.

Key Concerns

  • Low output escaping (4%)
  • No nonce checks on entry points
Vulnerabilities
None known

SMEW Comic Easel ♥ s2Member Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

SMEW Comic Easel ♥ s2Member Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
46
2 escaped
Nonce Checks
0
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

4% escaped48 total outputs
Attack Surface

SMEW Comic Easel ♥ s2Member Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionadmin_initSMEW-comic-easel-heart-s2member.php:29
actionadmin_menuSMEW-comic-easel-heart-s2member.php:30
filterws_plugin__s2member_check_post_level_access_excludedSMEW-comic-easel-heart-s2member.php:107
filterceo_display_featured_image_comicSMEW-comic-easel-heart-s2member.php:140
actionwidgets_initwidgets\thumbnail.php:175
Maintenance & Trust

SMEW Comic Easel ♥ s2Member Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedJun 9, 2017
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

SMEW Comic Easel ♥ s2Member Developer Profile

smudge

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect SMEW Comic Easel ♥ s2Member

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about SMEW Comic Easel ♥ s2Member