
Third Party Accounts Login Security & Risk Analysis
wordpress.org/plugins/third-party-accounts-loginEnable your users to comment by entering their name/email/website details via well known OpenID service providers like Google, Yahoo, Flickr etc.
Is Third Party Accounts Login Safe to Use in 2026?
Generally Safe
Score 85/100Third Party Accounts Login has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "third-party-accounts-login" plugin v1.0 presents a concerning security posture despite a clean vulnerability history. While the plugin boasts zero known CVEs, a clean attack surface with no readily apparent entry points, and no file operations or external HTTP requests, the static analysis reveals significant underlying risks. The most alarming finding is the presence of two "flows with unsanitized paths" identified during taint analysis, both marked as high severity. This strongly suggests that user-supplied data is not being properly validated or sanitized before being used in potentially sensitive operations, creating a pathway for injection attacks or unexpected behavior. Furthermore, the plugin exhibits a critical weakness in output escaping, with 0% of its 11 identified outputs being properly escaped. This means that any data displayed to users could be vulnerable to Cross-Site Scripting (XSS) attacks. The lack of capability checks and nonce checks on AJAX handlers (of which there are zero, but this indicates a lack of fundamental security implementation if any were present) also contribute to a weaker security posture. In conclusion, while the plugin appears small and has no known vulnerabilities, the presence of high-severity taint flows and a complete lack of output escaping are critical red flags that demand immediate attention and remediation. The absence of known CVEs could be a result of its limited adoption, lack of thorough security auditing, or simply a lack of discovered vulnerabilities rather than inherent security.
Key Concerns
- High severity taint flows found
- 0% of outputs properly escaped
- No capability checks
- No nonce checks
- SQL queries not fully prepared
Third Party Accounts Login Security Vulnerabilities
Third Party Accounts Login Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Third Party Accounts Login Attack Surface
WordPress Hooks 1
Maintenance & Trust
Third Party Accounts Login Maintenance & Trust
Maintenance Signals
Community Trust
Third Party Accounts Login Alternatives
SEO Ultimate
seo-ultimate
This all-in-one SEO plugin gives you control over meta titles & descriptions, open graph, auto-linking, rich-snippets, 404 monitoring, siloing &am …
Mailster Gmail Integration
mailster-gmail
Uses Gmail to deliver emails for the Mailster Newsletter Plugin for WordPress.
Reviews Plus
reviews-plus
Reviews Plus activates rich reviews for selected content. Turns comments into reviews and provides 100% SERP compatible reviews system.
Social Comments by Heateor
heateor-social-comments
Integrate Facebook Comments, Vkontakte Comments and/or Disqus Comments along with default comment form at your website
Add Google re captcha in WordPress Forms
wp-google-recaptcha
Added Google re-CAPTCHA in Wordpress in any form like comment form, login form, forgot password form, woocommerce form etc.
Third Party Accounts Login Developer Profile
2 plugins · 20 total installs
How We Detect Third Party Accounts Login
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/third-party-accounts-login/img/small/google.png/wp-content/plugins/third-party-accounts-login/img/small/yahoo.png/wp-content/plugins/third-party-accounts-login/img/small/wordpress.png/wp-content/plugins/third-party-accounts-login/img/small/aol.png/wp-content/plugins/third-party-accounts-login/img/small/flickr.png/wp-content/plugins/third-party-accounts-login/img/small/blogger.png/wp-content/plugins/third-party-accounts-login/img/small/livejournal.png/wp-content/plugins/third-party-accounts-login/img/small/myopenid.png+18 more/wp-content/plugins/third-party-accounts-login/js/jquery.js/wp-content/plugins/third-party-accounts-login/js/jquery.ui.jsHTML / DOM Fingerprints
tpal_texttpal_image_smalltpal_image_largelightui-sortable-placeholderondblclickonclicktpal_db_versionplugin_urljQuery