
WP Club Manager for Cricket Security & Risk Analysis
wordpress.org/plugins/wpcm-cricketWP Club Manager for Cricket is an extension for WP Club Manager which adds extra features for cricket clubs managing their website with WordPress.
Is WP Club Manager for Cricket Safe to Use in 2026?
Generally Safe
Score 85/100WP Club Manager for Cricket has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wpcm-cricket plugin v1.1.3 exhibits a generally poor security posture despite a seemingly small attack surface and no recorded historical vulnerabilities. The static analysis reveals significant concerns regarding output escaping, with 0% of outputs being properly escaped. This is a critical flaw that can lead to Cross-Site Scripting (XSS) vulnerabilities if the plugin handles user-supplied data before displaying it. Additionally, the presence of the `unserialize` function, even without any identified taint flows in this analysis, is a potential risk. Improperly sanitized serialized data can be exploited for various attacks, including Remote Code Execution (RCE). The lack of nonce checks and capability checks on any potential entry points, while currently zero, means that if new entry points are added in the future, they might inherit these weaknesses. The absence of historical vulnerabilities is a positive sign but does not negate the immediate risks identified in the code. The plugin's strengths lie in its use of prepared statements for SQL queries and the lack of external HTTP requests, which are good security practices. However, the severe output escaping issue and the risky use of `unserialize` outweigh these positives, making the plugin a moderate to high risk.
Key Concerns
- Outputs not properly escaped
- Use of unserialize function
- Missing nonce checks
- Missing capability checks
WP Club Manager for Cricket Security Vulnerabilities
WP Club Manager for Cricket Code Analysis
Dangerous Functions Found
Output Escaping
WP Club Manager for Cricket Attack Surface
WordPress Hooks 12
Maintenance & Trust
WP Club Manager for Cricket Maintenance & Trust
Maintenance Signals
Community Trust
WP Club Manager for Cricket Alternatives
WP Club Manager – WordPress Sports Club Plugin
wp-club-manager
WP Club Manager is easy to set-up and has everything you need to build and manage an amazing sports club website.
Sports Club Management
sports-club-management
Create members, competitions (leagues, ladder, knockout) (and, optional, invoices) for your (sports) club. Easy to manage and to publish on your site.
Hold My Court
hold-my-court
Lightweight court reservation plugin for clubs and HOAs. Manage tennis, pickleball, bocce, horseshoes, and more.
Tennis Software
tennis-software
Tennis Club Management Software.
WP Club Manager for Cricket Developer Profile
2 plugins · 710 total installs
How We Detect WP Club Manager for Cricket
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpcm-cricket/assets/css/wpcm-cricket.css/wp-content/plugins/wpcm-cricket/assets/js/wpcm-cricket.js/wp-content/plugins/wpcm-cricket/assets/js/wpcm-cricket.js/wp-content/plugins/wpcm-cricket/assets/css/wpcm-cricket.css?ver=/wp-content/plugins/wpcm-cricket/assets/js/wpcm-cricket.js?ver=HTML / DOM Fingerprints
wpcm-match-referee_wpcm_cricket_batting_wpcm_cricket_bowling_wpcm_cricket_match_toss