
WP Support by SproutedWeb Security & Risk Analysis
wordpress.org/plugins/sproutedweb-wp-supportAccess 24x7 WordPress Support + GTMetrix scans right from your dashboard.
Is WP Support by SproutedWeb Safe to Use in 2026?
Generally Safe
Score 85/100WP Support by SproutedWeb has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "sproutedweb-wp-support" v2.3 plugin exhibits a mixed security posture. While it has no recorded vulnerability history, suggesting a history of stable code, the static analysis reveals several areas for improvement. A significant concern is the presence of 6 AJAX handlers without authentication checks, presenting a considerable attack surface. Furthermore, the plugin's SQL query practices are suboptimal, with only 14% of queries using prepared statements, increasing the risk of SQL injection vulnerabilities. Output escaping is also inconsistent, with 56% properly escaped, leaving potential for cross-site scripting (XSS) flaws. The taint analysis shows 5 flows with unsanitized paths, though thankfully none are classified as critical or high severity. The lack of capability checks on AJAX handlers is a notable weakness that should be addressed to strengthen the plugin's overall security. The plugin has a moderate number of entry points, and a significant portion of these are not protected by proper authorization. This, combined with the less than ideal SQL and output escaping practices, points to potential security weaknesses despite the absence of known CVEs.
Key Concerns
- AJAX handlers without authentication checks
- Low percentage of prepared SQL statements
- Moderate percentage of unescaped output
- Unsanitized paths in taint analysis flows
- Missing capability checks
WP Support by SproutedWeb Security Vulnerabilities
WP Support by SproutedWeb Release Timeline
WP Support by SproutedWeb Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Support by SproutedWeb Attack Surface
AJAX Handlers 16
WordPress Hooks 6
Maintenance & Trust
WP Support by SproutedWeb Maintenance & Trust
Maintenance Signals
Community Trust
WP Support by SproutedWeb Alternatives
Glorious Services & Support
glorious-services-support
Glorious Services & Support by GloriousThemes helps customers and users who are using GloriouThemes themes and Plugins to directly contact the Sup …
Fluent Support – Helpdesk & Customer Support Ticket System
fluent-support
Feature Rich and Super Fast Support and Customer Ticketing System for WordPress.
iNET Webkit
inet-webkit
iNET Webkit được xây dựng theo tiêu chí gọn nhẹ, tinh giản tối đa việc tìm hiểu và công cụ cài đặt hỗ trợ vận hành website Wordpress.
WP Support Ticket
wp-support-ticket
User support plugin. Registered users will be able to create/ reply support tickets. Admin can reply on the tickets from admin panel.
Help Menu
help-menu
Adds Help menus & pages to admin with screenshots, visual manuals and video tutorials.
WP Support by SproutedWeb Developer Profile
1 plugin · 10 total installs
How We Detect WP Support by SproutedWeb
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sproutedweb-wp-support/assets/css/sproutedweb-support.css/wp-content/plugins/sproutedweb-wp-support/assets/js/sproutedweb-support.js/wp-content/plugins/sproutedweb-wp-support/assets/js/sproutedweb-support.jssproutedweb-wp-support/assets/css/sproutedweb-support.css?ver=sproutedweb-wp-support/assets/js/sproutedweb-support.js?ver=HTML / DOM Fingerprints
sproutedweb-support-dashboard-widgetsproutedweb_support_ajax_object/wp-json/sproutedweb-wp-support/v1/setting-save/wp-json/sproutedweb-wp-support/v1/gtmetrix-scan/wp-json/sproutedweb-wp-support/v1/gtmetrix-scan-result/wp-json/sproutedweb-wp-support/v1/license-verify/wp-json/sproutedweb-wp-support/v1/license-deactivate/wp-json/sproutedweb-wp-support/v1/gtmetrix-verify/wp-json/sproutedweb-wp-support/v1/gtmetrix-download-report/wp-json/sproutedweb-wp-support/v1/gtmetrix-history