
WP Group Subscriptions Security & Risk Analysis
wordpress.org/plugins/wp-group-subscriptionsAccepts paying group registrations. Gives access to restricted content for members or groups of members.
Is WP Group Subscriptions Safe to Use in 2026?
Generally Safe
Score 85/100WP Group Subscriptions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wp-group-subscriptions plugin version 0.1.7 exhibits a concerning security posture due to a significant number of unprotected entry points. All four identified AJAX handlers lack authentication checks, exposing them to potential unauthorized access and manipulation. Furthermore, the presence of the `unserialize` function and a high number of unsanitized paths identified in the taint analysis are substantial risks. While the plugin has no recorded vulnerability history, this does not negate the inherent dangers present in the current code. The percentage of prepared statements for SQL queries is good, and the output escaping is decent, but these positive aspects are overshadowed by the critical flaws in access control and data handling.
Key Concerns
- Unprotected AJAX handlers
- Taint flows with unsanitized paths
- Dangerous function: unserialize
WP Group Subscriptions Security Vulnerabilities
WP Group Subscriptions Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Group Subscriptions Attack Surface
AJAX Handlers 4
WordPress Hooks 61
Scheduled Events 2
Maintenance & Trust
WP Group Subscriptions Maintenance & Trust
Maintenance Signals
Community Trust
WP Group Subscriptions Alternatives
Kit (formerly ConvertKit) – Email Newsletter, Email Marketing, Membership, Subscribers and Landing Pages
convertkit
Build your email subscriber lists, send email marketing newsletters, sell more products and build your membership site with Kit (formerly ConvertKit).
Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction
paid-member-subscriptions
Feature-packed membership plugin for creating subscription plans, adding recurring payments & content restriction on your membership site.
Affiliates Manager Paid Membership Pro Integration
affiliates-manager-paid-membership-pro-integration
Process an affiliate commission via Affiliates Manager after a Paid Membership Pro checkout
myCred Paid Memberships Pro
mycred-paid-memberships-pro
📢🚨Important Notice: myCred Paid Memberships Pro is now part of the myCred Toolkit and will no longer receive updates here.
GoUrl Paid Memberships Pro – Bitcoin Payment Gateway Addon
gourl-bitcoin-paid-memberships-pro
Provides Bitcoin Payment Gateway for Paid Memberships Pro 1.8+ or higher. Accept Bitcoin, Bitcoin Cash, Litecoin, Dogecoin, Dash, etc Payments on Your …
WP Group Subscriptions Developer Profile
2 plugins · 0 total installs
How We Detect WP Group Subscriptions
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wp-group-subscriptions/css/styles.css/wp-content/plugins/wp-group-subscriptions/js/common.js/wp-content/plugins/wp-group-subscriptions/js/form-validation.js/wp-content/plugins/wp-group-subscriptions/js/payment-validation.js/wp-content/plugins/wp-group-subscriptions/js/shortcode-loader.js/wp-content/plugins/wp-group-subscriptions/js/common.js/wp-content/plugins/wp-group-subscriptions/js/form-validation.js/wp-content/plugins/wp-group-subscriptions/js/payment-validation.js/wp-content/plugins/wp-group-subscriptions/js/shortcode-loader.jswp-group-subscriptions/css/styles.css?ver=wp-group-subscriptions/js/common.js?ver=wp-group-subscriptions/js/form-validation.js?ver=wp-group-subscriptions/js/payment-validation.js?ver=wp-group-subscriptions/js/shortcode-loader.js?ver=HTML / DOM Fingerprints
wgs-subscriber-edit-formwgs-plan-selectionwgs-payment-formwgs-subscription-details<!-- BEGIN WGS SHORTCODE --><!-- END WGS SHORTCODE -->data-wgs-plan-iddata-wgs-subscriber-iddata-wgs-actionWGS_AJAX_URLWGS_NONCEWGS_PLAN_OPTIONSWGS_CURRENCY_SYMBOLWGS_FORM_VALIDATION_RULES/wp-json/wp-group-subscriptions/v1/plans/wp-json/wp-group-subscriptions/v1/payment/process[wgs_subscription_form][wgs_member_list][wgs_plan_details]