
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Security & Risk Analysis
wordpress.org/plugins/wp-dark-modeEnable dark mode on WordPress without any coding. Improve site accessibility with a stunning dark theme that improves conversion.
Is WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Safe to Use in 2026?
Generally Safe
Score 96/100WP Dark Mode – Improve Accessibility with AI Powered Dark Theme has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The "wp-dark-mode" plugin, version 5.3.3, demonstrates several positive security practices, including a significant percentage of prepared SQL statements and properly escaped output. The absence of unprotected entry points (AJAX, REST API) and the presence of numerous capability checks are strong indicators of a security-conscious development approach. However, concerns arise from the taint analysis, which identified one flow with unsanitized paths, labeled as high severity. This suggests a potential for path traversal or similar vulnerabilities if not handled with extreme care in the affected code. The plugin's vulnerability history is a notable area of concern. With four previously disclosed CVEs, including one high and three medium severity vulnerabilities, it indicates a pattern of past security weaknesses. While there are currently no unpatched vulnerabilities, the recurrence of common types like path traversal, XSS, and authorization issues suggests a need for ongoing vigilance and thorough code auditing. The most recent vulnerability was reported very recently, highlighting the continuous need for updates and patches.
Key Concerns
- High severity taint flow with unsanitized paths
- History of High severity vulnerabilities
- History of Medium severity vulnerabilities
- Vulnerability types: Path Traversal, XSS, Missing Auth
- Recent vulnerability reported
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Security Vulnerabilities
CVEs by Year
Severity Breakdown
4 total CVEs
WP Dark Mode – WordPress Dark Mode Plugin for Improved Accessibility, Dark Theme, Night Mode, and Social Sharing <= 5.0.4 - Missing Authorization
WP Dark Mode <= 4.0.7 - Authenticated (Subscriber+) Local File Inclusion via 'style'
WP Dark Mode <= 3.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
Appsero <= 1.2.1 - Missing Authorization
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Release Timeline
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Attack Surface
AJAX Handlers 5
REST API Routes 6
Shortcodes 8
WordPress Hooks 63
Maintenance & Trust
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Maintenance & Trust
Maintenance Signals
Community Trust
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Alternatives
Dusky Dark Mode – Dark Mode for Gutenberg and Elementor
dusky-dark-mode
Enable Dark Mode on your website & get an awesome user experience with advanced features.
DarkMeta Dark Mode
darkmeta-dark-mode
Transform WordPress site with the best dark mode plugin complete with options, dashboard dark mode, accessibility features, and no coding required.
Dark Mode Toggle
dark-mode-toggle
Bring dark mode toggle switch to your WordPress website. A simple switch to turn on and off the dark mode. Fast and easy to use.
DarkMySite – Advanced Dark Mode Plugin for WordPress
darkmysite
Best WordPress dark mode plugin to ready your site for the night. Multiple floating switch to choose between night mode and normal mode.
DarkLooks – Dark Mode Switcher For WordPress
darklooks-dark-mode-switcher
Short Description: Enable dark mode on your WordPress site for better eye comfort in low-light environments.
WP Dark Mode – Improve Accessibility with AI Powered Dark Theme Developer Profile
16 plugins · 32K total installs
How We Detect WP Dark Mode – Improve Accessibility with AI Powered Dark Theme
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-dark-mode/assets/css/admin-common.css/wp-content/plugins/wp-dark-mode/assets/css/admin-settings.css/wp-content/plugins/wp-dark-mode/assets/js/admin-dark-mode.min.js/wp-content/plugins/wp-dark-mode/assets/js/admin-common.min.js/wp-content/plugins/wp-dark-mode/assets/js/admin-settings.min.js/wp-content/plugins/wp-dark-mode/assets/js/admin-dark-mode.min.js/wp-content/plugins/wp-dark-mode/assets/js/admin-common.min.js/wp-content/plugins/wp-dark-mode/assets/js/admin-settings.min.js/wp-content/plugins/wp-dark-mode/assets/css/admin-common.css?ver=/wp-content/plugins/wp-dark-mode/assets/css/admin-settings.css?ver=/wp-content/plugins/wp-dark-mode/assets/js/admin-dark-mode.min.js?ver=/wp-content/plugins/wp-dark-mode/assets/js/admin-common.min.js?ver=/wp-content/plugins/wp-dark-mode/assets/js/admin-settings.min.js?ver=HTML / DOM Fingerprints
wp-dark-mode-ignoredata-wp-dark-mode-loadingwp_dark_mode_admin_jsonwp_dark_mode_icons/wp-json/wp-dark-mode