
World Domination Security & Risk Analysis
wordpress.org/plugins/world-dominationAdd WordPress market coverage summary to your dashboard.
Is World Domination Safe to Use in 2026?
Generally Safe
Score 100/100World Domination has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "world-domination" v2.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL injection vulnerabilities through prepared statements, and a low percentage of improperly escaped outputs are positive indicators. The plugin also doesn't appear to have a history of known vulnerabilities, suggesting diligent development or a lack of focus from attackers. The limited attack surface, with all entry points having some form of authorization (even if it's just a single capability check for all three shortcodes), is also a positive sign.
However, there are areas that warrant caution. The fact that there are no explicit nonce checks across any of the entry points is a significant concern, especially for shortcodes which can be triggered by users. While there's one capability check, it doesn't specify if it's sufficiently granular or universally applied to all shortcode actions. The single external HTTP request is also a potential point of failure or exploitation if the target endpoint is compromised or misconfigured. The zero taint analysis flows might be due to the limited scope of analysis or the plugin's design, but it doesn't entirely negate the risk of potential data handling issues if not rigorously tested.
Overall, the plugin's current version demonstrates good practices in key areas like SQL handling and output escaping. The lack of past vulnerabilities is encouraging. Nevertheless, the absence of nonce checks and the single external HTTP request represent notable weaknesses that could be exploited. A comprehensive security audit, focusing on the authentication and authorization mechanisms for the shortcodes and the security of the external HTTP request, would be highly recommended to further solidify its security.
Key Concerns
- Missing nonce checks on entry points
- External HTTP request without specified security
- Limited capability check coverage for shortcodes
World Domination Security Vulnerabilities
World Domination Release Timeline
World Domination Code Analysis
Output Escaping
World Domination Attack Surface
Shortcodes 3
WordPress Hooks 5
Maintenance & Trust
World Domination Maintenance & Trust
Maintenance Signals
Community Trust
World Domination Alternatives
Jetpack Social
jetpack-social
Write once, publish everywhere. Reach your target audience by sharing your content with Jetpack Social!
CollabPay ‑ Split Profits
collabpay
Automatically calculate, split & pay profits to product creators, influencers or sales reps!
xamoom
xamoom
The connection between the xamoom CMS and WordPress. Use your great mobile content also on the desktop.
Content Publicity – Social Share & Super Suggest Content to Google News Sites
content-publicity
Easy social sharing + unique "Super Suggest" let's users submit your content to Google News-approved publications so editors can consid …
EffiBadge – AI Visual Content Cards (Share Smarter)
effibadge-ai-visual-content-cards-share-smarter
A plugin that allows users to generate and share visually engaging content cards with AI, designed to boost social media engagement and traffic.
World Domination Developer Profile
10 plugins · 11K total installs
How We Detect World Domination
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/world-domination/inc/shared.php/wp-content/plugins/world-domination/inc/settings.php/wp-content/plugins/world-domination/inc/shortcodes.php/wp-content/plugins/world-domination/inc/add-to-dashboard.phpHTML / DOM Fingerprints
dashicons-star-filled[wp_total_market][wp_cms_market][wp_crm_market]