
Uhmi Security & Risk Analysis
wordpress.org/plugins/uhmiMonetize your content by selling your articles, videos, music, podcasts and any other type of content for any price you want.
Is Uhmi Safe to Use in 2026?
Generally Safe
Score 85/100Uhmi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "uhmi" v1.1 plugin exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs and the plugin's adherence to best practices like using prepared statements for SQL queries and a high percentage of properly escaped output are significant strengths. The presence of nonce and capability checks further reinforces its defensive mechanisms. However, the taint analysis reveals a potential area of concern: two flows with unsanitized paths. While these did not escalate to critical or high severity in this analysis, it indicates a potential weakness where user-supplied data might not be sufficiently validated before being used in a way that could lead to unintended consequences. The limited attack surface of two shortcodes, with no apparent unprotected entry points, is also a positive indicator. Overall, "uhmi" v1.1 appears to be a relatively secure plugin, with the primary area for improvement being the thorough sanitization of user input within the identified tainted flows to prevent any future exploitation, even if no immediate vulnerabilities are present.
Key Concerns
- Flows with unsanitized paths found
- Bundled library (TinyMCE) can pose risks
Uhmi Security Vulnerabilities
Uhmi Release Timeline
Uhmi Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Uhmi Attack Surface
Shortcodes 2
WordPress Hooks 37
Maintenance & Trust
Uhmi Maintenance & Trust
Maintenance Signals
Community Trust
Uhmi Alternatives
Exodox
exodox
With Exodox you can earn money from your web content, by locking access to selected posts and pages, which readers can unlock with a one-off payment.
Fluid
fluid
WordPress Integration for Fluid.us mircopayment Fluid is a new revenue partner for publishers. Capture revenues beyond advertising and traditional pay …
Jamatto Micropayments
jamatto-micropayments
Have you considered turning your blogs into a source of income? In fewer than 30 seconds, Jamatto lets you accept small payments from your readers.
WP PayMobile Content Locker
wp-paymobile-content-locker
WP PayMobile is a new monetization method for your website. Get payments by SMS / Phone Call for revealing content.
Acta — Pay Per Article
acta-pay-per-article
A pay-per-post solution for WordPress publishers. Give casual visitors a simple way to pay for content, no subscription required.
Uhmi Developer Profile
1 plugin · 10 total installs
How We Detect Uhmi
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/uhmi/app/admin/css/uhmi.css/wp-content/plugins/uhmi/app/public/css/uhmi.css/wp-content/plugins/uhmi/app/admin/js/uhmi.js/wp-content/plugins/uhmi/app/public/js/uhmi.js/wp-content/plugins/uhmi/app/admin/js/uhmi.js/wp-content/plugins/uhmi/app/public/js/uhmi.jsHTML / DOM Fingerprints
uhmi-paywall-contentUHMI_ACCOUNT_URLUHMI_TINYMCE_BUTTON_TITLEUHMI_PUBLIC_KEYUHMI_PRELOAD<!-- Uhmi Shortcode Start --><div class="uhmi-paywall-content"><p>[uhmi]