
WEDOS Global (CDN Cache & Security) Security & Risk Analysis
wordpress.org/plugins/wgpwppOur WordPress plugin has a full site caching feature, a CDN Cache feature, and optional settings for the sending of security reports.
Is WEDOS Global (CDN Cache & Security) Safe to Use in 2026?
Mostly Safe
Score 70/100WEDOS Global (CDN Cache & Security) is generally safe to use though it hasn't been updated recently. 1 past CVE were resolved. Keep it updated.
The plugin "wgpwpp" v1.2.2 exhibits a concerning security posture due to a significant number of unprotected entry points and a history of vulnerabilities, particularly related to missing authorization. While the use of prepared statements for SQL queries is a positive practice, it is overshadowed by the fact that all identified AJAX handlers and REST API routes lack proper authentication or permission checks. This creates a wide attack surface that could be easily exploited by unauthenticated users. The presence of the `unserialize` function is another critical red flag, especially in the absence of strict input validation, as it can lead to remote code execution vulnerabilities.
The vulnerability history, with a known unpatched medium severity CVE, further amplifies the risks. The pattern of "Missing Authorization" as a common vulnerability type strongly suggests a recurring oversight in how the plugin handles user permissions, making it a predictable target for attackers. While the plugin demonstrates some good practices like prepared statements, the overwhelming number of unprotected entry points and the historical vulnerability trend point towards a plugin that requires immediate attention and remediation to mitigate severe security risks.
Key Concerns
- Unprotected AJAX handlers
- Unprotected REST API routes
- Dangerous function: unserialize
- Low percentage of properly escaped output
- Unpatched medium severity CVE
- Missing authorization vulnerability history
- Flows with unsanitized paths
WEDOS Global (CDN Cache & Security) Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WEDOS Global <= 1.2.2 - Missing Authorization
WEDOS Global (CDN Cache & Security) Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
WEDOS Global (CDN Cache & Security) Attack Surface
AJAX Handlers 12
REST API Routes 1
WordPress Hooks 39
Scheduled Events 1
Maintenance & Trust
WEDOS Global (CDN Cache & Security) Maintenance & Trust
Maintenance Signals
Community Trust
WEDOS Global (CDN Cache & Security) Alternatives
Peakhour
peakhour
Seamlessly integrate wordpress with Peakhour's performance and security service. Peakhour can dramatically improve your page load times, block th …
powerwaf.com – WordPress WAF & CDN Plugin
powerwaf-cdn
Accelerate and protect your website to the maximum with PowerWAF CDN. With this plugin you can keep dynamic content updated at the edge to increase de …
Jetpack – WP Security, Backup, Speed, & Growth
jetpack
Improve your WP security with powerful one-click tools like backup, WAF, and malware scan. Includes free tools like stats, CDN and social sharing.
ManageWP Worker
worker
A better way to manage dozens of WordPress websites.
W3 Total Cache
w3-total-cache
Search Engine (SEO) & Performance Optimization (WPO) via caching. Integrated caching: CDN, Page, Minify, Object, Fragment, Database support.
WEDOS Global (CDN Cache & Security) Developer Profile
2 plugins · 1K total installs
How We Detect WEDOS Global (CDN Cache & Security)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wgpwpp/admin/css/fontawesome-free-6.5.2-web/css/fontawesome.min.css/wp-content/plugins/wgpwpp/admin/css/font-awesome-4.7.0/css/font-awesome.min.css/wp-content/plugins/wgpwpp/admin/css/fontawesome-free-6.5.2-web/css/solid.min.css/wp-content/plugins/wgpwpp/admin/css/wgpwpp-admin.css/wp-content/plugins/wgpwpp/admin/partials/wp-wgp/dist/mini.css/wp-content/plugins/wgpwpp/admin/css/wgpwpp-service.css/wp-content/plugins/wgpwpp/admin/js/wgpwpp-admin.js/wp-content/plugins/wgpwpp/admin/js/wgpwpp-admin.jswgpwpp/admin/css/fontawesome-free-6.5.2-web/css/fontawesome.min.css?ver=wgpwpp/admin/css/font-awesome-4.7.0/css/font-awesome.min.css?ver=wgpwpp/admin/css/fontawesome-free-6.5.2-web/css/solid.min.css?ver=wgpwpp/admin/css/wgpwpp-admin.css?ver=wgpwpp/admin/partials/wp-wgp/dist/mini.css?ver=wgpwpp/admin/css/wgpwpp-service.css?ver=wgpwpp/admin/js/wgpwpp-admin.js?ver=HTML / DOM Fingerprints
wgpwpp-admin-menuwgpwpp-layout-flexwgpwpp-contentwgpwpp-footerwgpwpp-footer-contentwgpwpp-content-centerwgpwpp-headerwgpwpp-header-content+16 moredata-wgpwpp-iddata-wgpwpp-actionwgpwpp_ajax_object/wp-json/wgpwpp/v1/report/wp-json/wgpwpp/v1/cache