
wpShopGermany IT-RECHT KANZLEI Security & Risk Analysis
wordpress.org/plugins/wpshopgermany-it-recht-kanzleiMit Hilfe dieses Plugins ist es möglich deutsche rechtssichere Texte (für Shops) über eine API zu aktualisieren.
Is wpShopGermany IT-RECHT KANZLEI Safe to Use in 2026?
Generally Safe
Score 99/100wpShopGermany IT-RECHT KANZLEI has a strong security track record. Known vulnerabilities have been patched promptly.
The "wpshopgermany-it-recht-kanzlei" plugin v2.2 presents a mixed security posture. On the positive side, the static analysis shows a clean attack surface with no exposed AJAX handlers, REST API routes, shortcodes, or cron events without authentication checks. The use of prepared statements for all SQL queries is also a strong indicator of good security practices. However, the code analysis does reveal some areas of concern. A significant portion (22%) of the output is not properly escaped, which could lead to Cross-Site Scripting (XSS) vulnerabilities if the unsanitized data is displayed to users. Furthermore, there is one identified flow with an unsanitized path, although it is not classified as critical or high severity, it still represents a potential risk. The plugin's vulnerability history is concerning, with two medium-severity CVEs previously identified, including Cross-Site Request Forgery (CSRF) and XSS. Although there are currently no unpatched vulnerabilities, the past occurrences of these common web application security flaws suggest a recurring pattern that warrants vigilance.
In conclusion, while the plugin has made strides in securing its direct entry points and database interactions, the unescaped output and unsanitized path flow indicate potential vulnerabilities that require attention. The history of past security issues, particularly in common areas like CSRF and XSS, reinforces the need for ongoing security reviews and prompt patching of any newly discovered weaknesses. The lack of capability checks is also a point of weakness, as it implies that any authenticated user might be able to access certain functionalities.
Key Concerns
- Unescaped output detected
- Flow with unsanitized path
- Medium severity vulnerability history (x2)
- Lack of capability checks
wpShopGermany IT-RECHT KANZLEI Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
wpShopGermany IT-RECHT KANZLEI <= 2.0 - Cross-Site Request Forgery
wpShopGermany IT-RECHT KANZLEI <= 1.7 - Authenticated (Administrator+) Stored Cross-Site Scripting
wpShopGermany IT-RECHT KANZLEI Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
wpShopGermany IT-RECHT KANZLEI Attack Surface
WordPress Hooks 4
Maintenance & Trust
wpShopGermany IT-RECHT KANZLEI Maintenance & Trust
Maintenance Signals
Community Trust
wpShopGermany IT-RECHT KANZLEI Alternatives
Legal Text Connector of the IT-Recht Kanzlei
legal-texts-connector-it-recht-kanzlei
Ensures that your website is always provided with warning-proof legal texts from IT-Recht Kanzlei after booking the GTC service.
Janolaw AGB Hosting
janolaw-agb-hosting
This plugin gets legal documents provided by janolaw AG (commercial service) like General terms, Imprint etc. for Wordpress sites and WooCommerce shop …
getLaw WP API Client
getlaw-wp-api-client
With this Plugin you can automatically embed legal texts of the Legal-Tech-Platform www.getLaw.de in your website and your shop.
Haendlerbund API
haendlerbund-api
API Connector to Händlerbund HB legal - to get legal text from your account
wpShopGermany – Händlerbund
wpshopgermany-handlerbund
Mit Hilfe dieses Plugins ist es möglich deutsche rechtssichere Texte (für Shops) zu aktualisieren. Die Texte werden vom Händlerbund bezogen.
wpShopGermany IT-RECHT KANZLEI Developer Profile
5 plugins · 2K total installs
How We Detect wpShopGermany IT-RECHT KANZLEI
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpshopgermany-it-recht-kanzlei/css/wpsgit.css/wp-content/plugins/wpshopgermany-it-recht-kanzlei/js/wpsgit.js/wp-content/plugins/wpshopgermany-it-recht-kanzlei/js/wpsgit.jswpshopgermany-it-recht-kanzlei/css/wpsgit.css?ver=wpshopgermany-it-recht-kanzlei/js/wpsgit.js?ver=HTML / DOM Fingerprints
wpsgit-contentwpsgit-headlinewpsgit-textwpsgit_submitwpsgit_action[wpsg_itrecht_agb][wpsg_itrecht_datenschutz][wpsg_itrecht_widerruf][wpsg_itrecht_impressum]