
VatanSMS.NET Security & Risk Analysis
wordpress.org/plugins/vatansms-netKullanım Detayları
Is VatanSMS.NET Safe to Use in 2026?
Generally Safe
Score 92/100VatanSMS.NET has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The vatansms-net plugin version 2.6 presents a moderate security risk, primarily due to a significant lack of security checks on its attack surface. While the plugin demonstrates good practices in output escaping (94%) and has no known vulnerabilities or dangerous function usage, the presence of an unprotected AJAX handler is a critical concern. This unprotected entry point could be exploited by unauthenticated users to execute actions that were likely intended to be restricted. The taint analysis, showing a high number of flows with unsanitized paths (7 out of 8), further exacerbates this risk, suggesting that data passed through these flows might not be properly validated or cleaned, potentially leading to various injection vulnerabilities if an attacker can control the input to these paths. The plugin's history of zero known vulnerabilities is a positive indicator of past security consciousness, but it does not mitigate the immediate risks identified in the current code analysis. The absence of nonce and capability checks on the AJAX handler, coupled with the taint analysis, are the most significant weaknesses that need immediate attention.
Key Concerns
- Unprotected AJAX handler
- High unsanitized paths in taint analysis
- SQL queries without prepared statements
- No nonce checks on entry points
- No capability checks on entry points
VatanSMS.NET Security Vulnerabilities
VatanSMS.NET Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
VatanSMS.NET Attack Surface
AJAX Handlers 1
WordPress Hooks 14
Maintenance & Trust
VatanSMS.NET Maintenance & Trust
Maintenance Signals
Community Trust
VatanSMS.NET Alternatives
Netgsm
netgsm
Netgsm wordpress eklentisi ile kullanıcılarınıza sms uzaklığında kalın.
MobiKoB
mobikob
MobiKoB eklentisi ile, MobiKoB hesabınızla;
WSMS (formerly WP SMS) – SMS & MMS Notifications with OTP and 2FA for WooCommerce
wp-sms
Send SMS/MMS notifications, OTP & 2FA messages, and WooCommerce updates with support for multiple gateways and plugin integrations.
SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery
sms-alert
Send WooCommerce SMS notifications, OTP verification, abandoned cart recovery alerts, and real-time order updates to customers and admins.
افزونه پیامک حرفه ای فراز اس ام اس
farazsms
شما می توانید با استفاده از افزونه فراز اس ام اس، سایت خود را با ابزاری خودکار برای ارسال پیامک و ذخیره شماره در دفترچه تلفن، تقویت کنید.
VatanSMS.NET Developer Profile
2 plugins · 30 total installs
How We Detect VatanSMS.NET
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/vatansms-net/assets/app.css/wp-content/plugins/vatansms-net/assets/app.js/wp-content/plugins/vatansms-net/assets/logo.pnghttps://cdnjs.cloudflare.com/ajax/libs/font-awesome/5.9.0/css/all.min.cssHTML / DOM Fingerprints
vatansms-api-idvatansms-api-keyvatansms-is-loginvatansms-sendervatansms-fullnamevatansms-kredit+31 more