
VIZE Tests – Basic Security & Risk Analysis
wordpress.org/plugins/vize-tests-basicThis plugin will help you to create and configure different type of tests with multiple choice questions. And embed those tests in any Post or Page us …
Is VIZE Tests – Basic Safe to Use in 2026?
Generally Safe
Score 85/100VIZE Tests – Basic has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The vize-tests-basic plugin version 1.0.0 presents a mixed security posture. On the positive side, it shows no known CVEs and avoids potentially risky operations like file manipulation or external HTTP requests. The use of prepared statements for SQL queries is also a strength, with 68% being prepared, indicating some awareness of secure database practices. However, significant concerns arise from the static and taint analysis. The plugin exposes two AJAX handlers without any authentication checks, creating a substantial attack surface for unauthorized actions. Furthermore, the taint analysis reveals a critical issue: all seven analyzed flows have unsanitized paths, with four identified as high severity. This strongly suggests that user-supplied data is not being properly validated or escaped, making it vulnerable to various injection attacks, such as cross-site scripting (XSS) or SQL injection, despite the prepared statements for most SQL queries. The absence of capability checks further exacerbates these risks by not verifying user permissions before executing potentially sensitive operations. While the plugin has no historical vulnerabilities, this could be due to its small scale or simply a lack of prior in-depth security analysis, rather than inherent security. The current findings indicate a need for immediate attention to sanitize input and implement proper authentication and authorization checks on all entry points.
Key Concerns
- AJAX handlers without auth checks
- High severity taint flows
- Unsanitized paths in all taint flows
- Capability checks missing
VIZE Tests – Basic Security Vulnerabilities
VIZE Tests – Basic Release Timeline
VIZE Tests – Basic Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
VIZE Tests – Basic Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
VIZE Tests – Basic Maintenance & Trust
Maintenance Signals
Community Trust
VIZE Tests – Basic Alternatives
Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker
quiz-master-next
Create quizzes, surveys, and tests easily on WordPress with this versatile plugin. Perfect for engaging any audience and gathering valuable insights!
Watu Quiz
watu
Creates exams, surveys, and quizzes with unlimited number of questions and answers. Mobile/touch - friendly.
ARI Stream Quiz – WordPress Quizzes Builder
ari-stream-quiz
Easy to use WordPress Viral Quiz Plugin. Create Trivia and Personality quizzes in BuzzFeed style and collect unlimited leads.
Chained Quiz
chained-quiz
Create a quiz where the next question depends on the answer to the previous question. Final quiz results depend on the amount of collected points.
Riddle Quiz Maker – easily add quizzes with unlimited lead generation to your site
riddle-playful-content-on-the-go
Riddle’s beautifully intuitive quiz maker lets you create unlimited quizzes, personality tests, and more—no coding, no limits.
VIZE Tests – Basic Developer Profile
2 plugins · 50 total installs
How We Detect VIZE Tests – Basic
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/vize-tests-basic/admin/css/vize-tests-admin.css/wp-content/plugins/vize-tests-basic/admin/js/jquery.validate.js/wp-content/plugins/vize-tests-basic/admin/js/vize-tests-admin.jsvize-tests-basic/admin/css/vize-tests-admin.css?ver=vize-tests-basic/admin/js/jquery.validate.js?ver=vize-tests-basic/admin/js/vize-tests-admin.js?ver=