
Webdzier Companion Security & Risk Analysis
wordpress.org/plugins/webdzier-companionEnhance Webdzier Themes WordPress Themes additional functionality.
Is Webdzier Companion Safe to Use in 2026?
Generally Safe
Score 92/100Webdzier Companion has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The webdzier-companion plugin version 3.4 exhibits a generally good security posture based on the provided static analysis. The absence of any identified CVEs and a clean vulnerability history are significant strengths, suggesting a well-maintained plugin. The code analysis reveals no direct SQL injection risks due to the consistent use of prepared statements and no external HTTP requests, which are excellent security practices. Furthermore, the low number of entry points and the absence of taint flows with unsanitized paths indicate a limited attack surface and a commitment to secure coding, especially concerning untrusted data handling. The majority of output is properly escaped, mitigating risks of cross-site scripting (XSS). However, a notable concern is the presence of the `unserialize()` function, which, without proper validation of the serialized data, can be a vector for object injection vulnerabilities. While the code signals show three nonce checks, the complete lack of capability checks on entry points is a significant weakness, meaning any user, regardless of their role or permissions, could potentially trigger plugin functionalities if an entry point were discoverable and exploitable. The presence of file operations, while not inherently insecure, warrants further scrutiny in a deeper audit to ensure they are not mishandled.
Key Concerns
- Use of unserialize() without data validation
- No capability checks on entry points
Webdzier Companion Security Vulnerabilities
Webdzier Companion Code Analysis
Dangerous Functions Found
Output Escaping
Webdzier Companion Attack Surface
WordPress Hooks 60
Maintenance & Trust
Webdzier Companion Maintenance & Trust
Maintenance Signals
Community Trust
Webdzier Companion Alternatives
Loginizer
loginizer
Loginizer is a WordPress security plugin which helps you fight against bruteforce attacks.
Redux Framework
redux-framework
Redux is a simple, truly extensible, and fully responsive options framework for WordPress themes and plugins. It ships with an integrated demo.
LightStart – Maintenance Mode, Coming Soon and Landing Page Builder
wp-maintenance-mode
Easy Drag & Drop Page Builder that adds a splash page to your site that it's perfect for a coming soon page, maintenance or landing page.
Admin Menu Editor
admin-menu-editor
Lets you edit the WordPress admin menu. You can re-order, hide or rename menus, add custom menus and more.
Adminimize
adminimize
Adminimize that lets you hide 'unnecessary' items from the WordPress backend
Webdzier Companion Developer Profile
5 plugins · 1K total installs
How We Detect Webdzier Companion
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/webdzier-companion/inc/custom-controls/range-validator/range-control.php/wp-content/plugins/webdzier-companion/inc/custom-controls/customizer-repeater/functions.php/wp-content/plugins/webdzier-companion/inc/hotelgalaxy/init.php/wp-content/plugins/webdzier-companion/inc/hotel-galaxy/hotel-galaxy.php/wp-content/plugins/webdzier-companion/inc/hotelpress/hotelpress.php/wp-content/plugins/webdzier-companion/inc/hotelgalaxy/cpt/room-cpt.php/wp-content/plugins/webdzier-companion/inc/webdzier-comapnion-activator.php/wp-content/plugins/webdzier-companion/inc/custom-controls/customizer-repeater/class/customizer-repeater-control.phpHTML / DOM Fingerprints
hotelgalaxy_repeatercustomizer_repeater_image_controlcustomizer_repeater_icon_controlcustomizer_repeater_color_controlcustomizer_repeater_number_controlcustomizer_repeater_title_controlcustomizer_repeater_subtitle_control+15 more