White Label Megapack Branding Security & Risk Analysis

wordpress.org/plugins/white-label-megapack-branding

You can customize the wordpress admin's panel, hide or insert functions in the dashboard, posts, pages,media; customize the login page's gra …

0 active installs v1.0.4 PHP + WP 4.9+ Updated Mar 29, 2021
brandingcustom-adminmanager-websitewhite-label
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is White Label Megapack Branding Safe to Use in 2026?

Generally Safe

Score 85/100

White Label Megapack Branding has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "white-label-megapack-branding" plugin v1.0.4 exhibits a mixed security posture. While it demonstrates good practices in SQL query handling and nonce checks, there are significant concerns regarding its attack surface and data sanitization. The presence of two AJAX handlers without authentication checks is a critical vulnerability that could allow unauthorized actions. Furthermore, the taint analysis reveals three high-severity flows with unsanitized paths, indicating potential for sensitive data exposure or manipulation. The plugin's history of zero known vulnerabilities is a positive indicator of past security diligence, but it does not negate the current risks identified in the static analysis. The lack of documented past vulnerabilities could suggest either a well-maintained codebase or a lack of comprehensive historical security auditing.

Key Concerns

  • AJAX handlers without authentication checks
  • High severity taint flows with unsanitized paths
  • Low percentage of properly escaped output
Vulnerabilities
None known

White Label Megapack Branding Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

White Label Megapack Branding Release Timeline

v1.0.4Current
v1.0.3
Code Analysis
Analyzed Apr 16, 2026

White Label Megapack Branding Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
18 prepared
Unescaped Output
175
243 escaped
Nonce Checks
9
Capability Checks
14
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

86% prepared21 total queries

Output Escaping

58% escaped418 total outputs
Data Flows · Security
6 unsanitized

Data Flow Analysis

14 flows6 with unsanitized paths
no_items (admin/add-custom-page/include/pages.php:50)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

White Label Megapack Branding Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_query-attachmentsinclude/functions/media/classes/includes/hooks.php:29
authwp_ajax_save-attachment-compatinclude/functions/media/classes/includes/hooks.php:32

Shortcodes 1

[mc-gallery] include/functions/media/classes/includes/hooks.php:44
WordPress Hooks 172
actioninitadmin/add-custom-page/custom-admin-page.php:222
actionadmin_menuadmin/add-custom-page/custom-admin-page.php:223
actionadmin_enqueue_scriptsadmin/add-custom-page/custom-admin-page.php:224
filterset-screen-optionadmin/add-custom-page/include/pages.php:610
actionadmin_initadmin/admin-bar.php:27
actionwp_before_admin_bar_renderadmin/admin-bar.php:30
actionadmin_menuadmin/admin-functions.php:12
actionadmin_bar_menuadmin/admin-functions.php:33
actionadmin_enqueue_scriptsadmin/admin-functions.php:51
actionadmin_noticesadmin/admin-functions.php:70
actionadmin_initadmin/admin-menu.php:31
actionnetwork_admin_menuadmin/admin-menu.php:36
actionadmin_menuadmin/admin-menu.php:40
actionadmin_menuadmin/admin-menu.php:44
filterrole_has_capadmin/admin-menu.php:118
filterrole_has_capadmin/admin-menu.php:122
actionwlmpb_extension_activationadmin/options/managerwebsite-capabilities.php:15
actionadmin_initadmin/options/managerwebsite-capabilities.php:29
actionadmin_initadmin/options/managerwebsite-capabilities.php:43
actionadmin_initadmin/options/managerwebsite-capabilities.php:63
actionadmin_initadmin/options/managerwebsite-capabilities.php:83
actionpre_current_active_pluginsadmin/options/managerwebsite-capabilities.php:86
actionadmin_initadmin/options/managerwebsite-capabilities.php:122
actionadmin_initadmin/options/managerwebsite-capabilities.php:136
actionadmin_initadmin/options/managerwebsite-capabilities.php:154
actionadmin_initadmin/options/managerwebsite-capabilities.php:168
actionadmin_initadmin/options/managerwebsite-capabilities.php:182
actionadmin_headadmin/options/managerwebsite-capabilities.php:194
actionwlmpb_create_optionsadmin/options/register-settings.php:5
actionwlmpb_settings_contentadmin/settings/coming-soon.php:6
actionwlmpb_settings_contentadmin/settings/comments-settings.php:6
actionwlmpb_settings_contentadmin/settings/cookie-bar-settings.php:6
actionwlmpb_settings_tabadmin/settings/create-tabs.php:4
actionwlmpb_settings_tabadmin/settings/create-tabs.php:12
actionwlmpb_settings_tabadmin/settings/create-tabs.php:20
actionwlmpb_settings_tabadmin/settings/create-tabs.php:28
actionwlmpb_settings_tabadmin/settings/create-tabs.php:36
actionwlmpb_settings_tabadmin/settings/create-tabs.php:44
actionwlmpb_settings_tabadmin/settings/create-tabs.php:52
actionwlmpb_settings_tabadmin/settings/create-tabs.php:60
actionwlmpb_settings_tabadmin/settings/create-tabs.php:68
actionwlmpb_settings_tabadmin/settings/create-tabs.php:76
actionwlmpb_settings_tabadmin/settings/create-tabs.php:85
actionwlmpb_settings_tabadmin/settings/create-tabs.php:93
actionwlmpb_settings_tabadmin/settings/create-tabs.php:101
actionwlmpb_settings_tabadmin/settings/create-tabs.php:109
actionwlmpb_settings_tabadmin/settings/create-tabs.php:117
actionwlmpb_settings_tabadmin/settings/create-tabs.php:125
actionwlmpb_settings_tabadmin/settings/create-tabs.php:133
actionwlmpb_settings_contentadmin/settings/custom-code.php:6
actionwlmpb_settings_contentadmin/settings/custom-login-redirect-settings.php:6
actionwlmpb_settings_contentadmin/settings/dashboard-widget-settings.php:6
actionwlmpb_settings_contentadmin/settings/documentation.php:6
actionwlmpb_settings_contentadmin/settings/google-recaptcha-settings.php:6
actionwlmpb_settings_contentadmin/settings/header-footer-admin-wordpress-settings.php:6
actionwlmpb_settings_contentadmin/settings/login-settings.php:6
actionwlmpb_settings_contentadmin/settings/managerwebsite-access.php:6
actionwlmpb_settings_contentadmin/settings/media-settings.php:6
actionwlmpb_settings_contentadmin/settings/pages-settings.php:6
actionwlmpb_settings_contentadmin/settings/post-settings.php:6
actionwp_loadedinclude/functions/coming-soon/coming-soon.php:20
filtertemplate_includeinclude/functions/coming-soon/coming-soon.php:24
actionwlmpb_coming_soon_metainclude/functions/coming-soon/coming-soon.php:33
filtercomment_form_default_fieldsinclude/functions/comments/comments.php:7
actionget_footerinclude/functions/cookie-bar/cookie-bar.php:11
actionwp_footerinclude/functions/cookie-bar/cookie-bar.php:60
actionwp_headinclude/functions/custom-code/custom-code.php:20
actionwp_headinclude/functions/custom-code/custom-code.php:45
actionwp_headinclude/functions/custom-code/custom-code.php:56
actionadmin_headinclude/functions/custom-code/custom-code.php:67
actionwp_headinclude/functions/custom-code/custom-code.php:81
actionwp_headinclude/functions/custom-code/custom-code.php:92
actionadmin_noticesinclude/functions/dashboard/dashboard-widget.php:12
actionwp_dashboard_setupinclude/functions/dashboard/dashboard-widget.php:15
actionwp_dashboard_setupinclude/functions/dashboard/dashboard-widget.php:32
actionwp_dashboard_setupinclude/functions/dashboard/dashboard-widget.php:54
actionwp_dashboard_setupinclude/functions/dashboard/dashboard-widget.php:78
actionwp_dashboard_setupinclude/functions/dashboard/dashboard-widget.php:134
actionwp_user_dashboard_setupinclude/functions/dashboard/dashboard-widget.php:135
actioncomment_form_after_fieldsinclude/functions/google-recaptcha/google-recaptcha.php:13
actionlogin_forminclude/functions/google-recaptcha/google-recaptcha.php:14
actionregister_forminclude/functions/google-recaptcha/google-recaptcha.php:15
actionlogin_enqueue_scriptsinclude/functions/google-recaptcha/google-recaptcha.php:54
actionwp_enqueue_scriptsinclude/functions/google-recaptcha/google-recaptcha.php:55
actionpreprocess_commentinclude/functions/google-recaptcha/google-recaptcha.php:58
actionwp_authenticate_userinclude/functions/google-recaptcha/google-recaptcha.php:61
actionregistration_errorsinclude/functions/google-recaptcha/google-recaptcha.php:62
actioninitinclude/functions/google-recaptcha/google-recaptcha.php:67
filtergettextinclude/functions/header-footer/header-footer.php:12
filteradmin_footer_textinclude/functions/header-footer/header-footer.php:26
actionadmin_menuinclude/functions/header-footer/header-footer.php:36
actionadmin_bar_menuinclude/functions/header-footer/header-footer.php:47
actionwp_headinclude/functions/header-footer/header-footer.php:169
actionlogin_enqueue_scriptsinclude/functions/login-page/login-page.php:26
actionlogin_footerinclude/functions/login-page/login-page.php:132
filterlogin_headerurlinclude/functions/login-page/login-page.php:144
filterlogin_headertextinclude/functions/login-page/login-page.php:156
filtertemplate_includeinclude/functions/login-page/login-page.php:159
actionlogin_footerinclude/functions/login-page/login-page.php:177
actionadmin_noticesinclude/functions/login-page/login-page.php:250
actionnetwork_admin_noticesinclude/functions/login-page/login-page.php:251
actionadmin_initinclude/functions/login-page/login-page.php:259
actionadmin_noticesinclude/functions/login-page/login-page.php:260
actionnetwork_admin_noticesinclude/functions/login-page/login-page.php:261
actionwpmu_optionsinclude/functions/login-page/login-page.php:272
actionupdate_wpmu_optionsinclude/functions/login-page/login-page.php:273
actionplugins_loadedinclude/functions/login-page/login-page.php:276
actionwp_loadedinclude/functions/login-page/login-page.php:277
filtersite_urlinclude/functions/login-page/login-page.php:279
filternetwork_site_urlinclude/functions/login-page/login-page.php:280
filterwp_redirectinclude/functions/login-page/login-page.php:281
filtersite_option_welcome_emailinclude/functions/login-page/login-page.php:283
actioninitinclude/functions/media/classes/includes/hooks.php:13
actionadmin_enqueue_scriptsinclude/functions/media/classes/includes/hooks.php:16
actionadmin_footer-upload.phpinclude/functions/media/classes/includes/hooks.php:17
actionadmin_noticesinclude/functions/media/classes/includes/hooks.php:18
actionload-upload.phpinclude/functions/media/classes/includes/hooks.php:19
actionadd_attachmentinclude/functions/media/classes/includes/hooks.php:22
actionedit_attachmentinclude/functions/media/classes/includes/hooks.php:23
filterattachment_fields_to_editinclude/functions/media/classes/includes/hooks.php:26
actionrestrict_manage_postsinclude/functions/media/classes/includes/hooks.php:35
filterrequestinclude/functions/media/classes/includes/hooks.php:38
actionpre_get_postsinclude/functions/media/classes/includes/hooks.php:41
actionplugins_loadedinclude/functions/media/media.php:24
filtermedia_view_stringsinclude/functions/media/media.php:36
actionwp_loadedinclude/functions/media/media.php:70
filterbulk_actions-uploadinclude/functions/media/media.php:72
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:6
filtermanage_posts_columnsinclude/functions/posts-and-pages/posts-and-pages.php:11
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:22
filtermanage_posts_columnsinclude/functions/posts-and-pages/posts-and-pages.php:27
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:38
filtermanage_posts_columnsinclude/functions/posts-and-pages/posts-and-pages.php:43
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:54
filtermanage_posts_columnsinclude/functions/posts-and-pages/posts-and-pages.php:59
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:70
filtermanage_posts_columnsinclude/functions/posts-and-pages/posts-and-pages.php:75
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:86
filtermanage_posts_columnsinclude/functions/posts-and-pages/posts-and-pages.php:91
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:103
filterbulk_actions-edit-postinclude/functions/posts-and-pages/posts-and-pages.php:108
filterrest_prepare_taxonomyinclude/functions/posts-and-pages/posts-and-pages.php:124
filterrest_prepare_taxonomyinclude/functions/posts-and-pages/posts-and-pages.php:138
actioninitinclude/functions/posts-and-pages/posts-and-pages.php:152
actionadmin_headinclude/functions/posts-and-pages/posts-and-pages.php:216
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:233
filtermanage_pages_columnsinclude/functions/posts-and-pages/posts-and-pages.php:238
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:249
filtermanage_pages_columnsinclude/functions/posts-and-pages/posts-and-pages.php:254
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:265
filtermanage_pages_columnsinclude/functions/posts-and-pages/posts-and-pages.php:270
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:281
filtermanage_pages_columnsinclude/functions/posts-and-pages/posts-and-pages.php:286
actionadmin_initinclude/functions/posts-and-pages/posts-and-pages.php:298
filterbulk_actions-edit-pageinclude/functions/posts-and-pages/posts-and-pages.php:303
actioninitinclude/functions/posts-and-pages/posts-and-pages.php:317
filtercustom_menu_orderinclude/functions/re-order-menu-admin/re-order-menu-admin.php:176
actionadmin_headinclude/functions/re-order-menu-admin/re-order-menu-admin.php:511
actionadmin_footerinclude/functions/re-order-menu-admin/re-order-menu-admin.php:512
actionadmin_enqueue_scriptsinclude/plugin-functions.php:43
actionadmin_initinclude/plugin-functions.php:45
actionadmin_enqueue_scriptsstyling/styling-functions.php:13
actionadmin_enqueue_scriptsstyling/styling-functions.php:24
actionwp_enqueue_scriptsstyling/styling-functions.php:34
actionadmin_headstyling/wlmpb-dynamic-css.php:225
actionadmin_headstyling/wlmpb-dynamic-css.php:300
actionwlmpb_extension_activationwhite-label-megapack-branding.php:60
actionupgrader_process_completewhite-label-megapack-branding.php:61
filterlogin_redirectwhite-label-megapack-branding.php:92
actionafter_setup_themewhite-label-megapack-branding.php:93
actionwp_logoutwhite-label-megapack-branding.php:94
filtershow_admin_barwhite-label-megapack-branding.php:140
Maintenance & Trust

White Label Megapack Branding Maintenance & Trust

Maintenance Signals

WordPress version tested5.7.15
Last updatedMar 29, 2021
PHP min version
Downloads973

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

White Label Megapack Branding Developer Profile

Roberto Bottalico

8 plugins · 230 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect White Label Megapack Branding

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/white-label-megapack-branding/admin/admin-bar.css/wp-content/plugins/white-label-megapack-branding/admin/admin-menu.css/wp-content/plugins/white-label-megapack-branding/admin/login-page-customizer.css/wp-content/plugins/white-label-megapack-branding/admin/login-page-customizer.js/wp-content/plugins/white-label-megapack-branding/admin/menu-detect.css/wp-content/plugins/white-label-megapack-branding/admin/menu-detect.js/wp-content/plugins/white-label-megapack-branding/admin/rrurls.css/wp-content/plugins/white-label-megapack-branding/admin/rrurls.js+3 more
Script Paths
/wp-content/plugins/white-label-megapack-branding/admin/login-page-customizer.js/wp-content/plugins/white-label-megapack-branding/admin/menu-detect.js/wp-content/plugins/white-label-megapack-branding/admin/rrurls.js/wp-content/plugins/white-label-megapack-branding/include/js/login.js

HTML / DOM Fingerprints

CSS Classes
wlmpb-admin-barwlmpb-menu-detect
HTML Comments
<!-- Separate Admin detect menu page in back-end only if the user activates it --><!-- Add separate section for add menu from plugin in admin area --><!-- Init plugin -->
Data Attributes
data-wlmpb-admin-bardata-wlmpb-menu-detectdata-wlmpbam-page-slug
JS Globals
WLMPB_Admin_Menu_DetectWLMPB_Admin_BarWlmpbRRurls
FAQ

Frequently Asked Questions about White Label Megapack Branding