
UltimateAdminSms Security & Risk Analysis
wordpress.org/plugins/ultimateadminsmsThe UltimateAdminSms Plugin allows WordPress Administrators to send SMS to their users through the ultimatesmsapi.tk SMS Gateway.
Is UltimateAdminSms Safe to Use in 2026?
Generally Safe
Score 85/100UltimateAdminSms has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ultimateadminsms" v0.1 plugin presents a mixed security posture. While it demonstrates strengths in avoiding direct SQL injection by using prepared statements and has no recorded vulnerability history, significant concerns arise from its output handling and taint analysis. The fact that 100% of its outputs are unescaped is a major red flag, indicating a high potential for cross-site scripting (XSS) vulnerabilities. Furthermore, all analyzed taint flows resulted in unsanitized paths, suggesting potential for data manipulation or unauthorized access if these flows are exposed through the limited attack surface. The absence of any recorded CVEs is positive, but the current code analysis reveals inherent risks that need addressing. The plugin's low attack surface is a mitigating factor, but the unescaped outputs and unsanitized taint flows are critical weaknesses that could be exploited.
Key Concerns
- Outputs are not properly escaped
- Taint flows with unsanitized paths found
UltimateAdminSms Security Vulnerabilities
UltimateAdminSms Release Timeline
UltimateAdminSms Code Analysis
Output Escaping
Data Flow Analysis
UltimateAdminSms Attack Surface
WordPress Hooks 7
Maintenance & Trust
UltimateAdminSms Maintenance & Trust
Maintenance Signals
Community Trust
UltimateAdminSms Alternatives
Pay with Vipps and MobilePay for WooCommerce
woo-vipps
Official Vipps MobilePay payment plugin for WooCommerce.
افزونه پیامک حرفه ای فراز اس ام اس
farazsms
شما می توانید با استفاده از افزونه فراز اس ام اس، سایت خود را با ابزاری خودکار برای ارسال پیامک و ذخیره شماره در دفترچه تلفن، تقویت کنید.
Scanpay for WooCommerce
scanpay-for-woocommerce
Accept payments in WooCommerce with a reliable and secure Scandinavian payment gateway.
Vipps/MobilePay recurring payments for WooCommerce
vipps-recurring-payments-gateway-for-woocommerce
Vipps/MobilePay recurring payments is perfect if you run a shop with subscription based services or products that would benefit from subscriptions.
Contact Group Button
contact-group-button
Add group contact phone, sms, facebook messages, zalo... to website. Display in desktop, laptop, table, phone and more.
UltimateAdminSms Developer Profile
2 plugins · 20 total installs
How We Detect UltimateAdminSms
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ultimateadminsms/ultimateSms.png/UltimateAdminSms/checkLength.jsHTML / DOM Fingerprints
id="send_sms_form"id="user_type"id="ph_numbers"id="InfoCharCounter"id="username_s"id="password_s"+1 more