
WpCues Basic Quiz Security & Risk Analysis
wordpress.org/plugins/wpcues-basic-quizCreate math / html / multimedia rich quiz. Award Mozilla Open Badges, Create colorful charts / leader boards and sell your quizzes using stripe.
Is WpCues Basic Quiz Safe to Use in 2026?
Generally Safe
Score 100/100WpCues Basic Quiz has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The wpcues-basic-quiz plugin v1.6.5 exhibits a mixed security posture. While it demonstrates strong adherence to secure coding practices by utilizing prepared statements for the vast majority of its SQL queries and implementing capability checks on a significant number of entry points, several areas raise considerable concern. The plugin's attack surface is substantial, with a large number of unprotected AJAX handlers representing a prime vector for unauthorized access and manipulation. Furthermore, the presence of unsanitized paths in a significant portion of taint flows, coupled with the use of the `unserialize` function, indicates a high risk of remote code execution or data corruption if these flows are exploitable. The absence of any recorded vulnerabilities in its history is a positive indicator of past security, suggesting that developers may have a general awareness of secure coding. However, this historical data does not negate the immediate risks identified in the static and taint analysis of the current version.
Key Concerns
- Unprotected AJAX handlers
- Taint flows with unsanitized paths
- Dangerous function 'unserialize'
- Low percentage of properly escaped output
- Low number of nonce checks
WpCues Basic Quiz Security Vulnerabilities
WpCues Basic Quiz Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
WpCues Basic Quiz Attack Surface
AJAX Handlers 43
Shortcodes 4
WordPress Hooks 94
Scheduled Events 1
Maintenance & Trust
WpCues Basic Quiz Maintenance & Trust
Maintenance Signals
Community Trust
WpCues Basic Quiz Alternatives
Watu Quiz
watu
Creates exams, surveys, and quizzes with unlimited number of questions and answers. Mobile/touch - friendly.
Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker
quiz-master-next
Create quizzes, surveys, and tests easily on WordPress with this versatile plugin. Perfect for engaging any audience and gathering valuable insights!
Chained Quiz
chained-quiz
Create a quiz where the next question depends on the answer to the previous question. Final quiz results depend on the amount of collected points.
Quiz Creator – Easy Quiz, Survey & Test Maker
quiz-creator
Create and manage interactive quizzes with multiple question types, automatic scoring, timed quizzes, and email notifications.
Watu to MailChimp
watu-bridge-to-mailchimp
A bridge between the Watu Quiz plugin and MailChimp /*** This program is free software: you can redistribute it and/or modify it under the terms of …
WpCues Basic Quiz Developer Profile
1 plugin · 10 total installs
How We Detect WpCues Basic Quiz
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpcues-basic-quiz/admin/css/olderwp-spinner.csswpcues-basic-quiz/admin/css/olderwp-spinner.css?ver=HTML / DOM Fingerprints
wpcue_quiz_settingwpcue_quiz_actionwpcue_quiz_baseWpCueQuiz_AdminWpCueQuiz_PublicWpCueQuiz_ConfigWpCueBasicQuizWpCueBasicBadge<!-- Show author specific posts and comments --><!-- admin-menu pages --><!-- Include Classes --><!-- Add mathslate plugin to tinymce editors -->data-wpcuequiz-quiziddata-wpcuequiz-questioniddata-wpcuequiz-quiztypedata-wpcuequiz-questiondata-wpcuequiz-answerdata-wpcuequiz-totalquestionsWpCueQuizwpCueQuizAjax/wp-json/wpcues-basic-quiz/v1/quizzes/wp-json/wpcues-basic-quiz/v1/quizzes/<id>[wpcue_quiz id="1"][wpcue_quiz][wpcue_quiz_results]