Plugin inspection:

User Role Editor

No issues found

Last revised:

Confidence: Medium
This plugin has been given a short, targeted code review.

We didn't find anything worrying in this plugin. It's probably safe. Read more about this recommendation.


This recommendation applies to version 3.14.1 of this plugin, but the most recent version is 4.64.2. These findings may no longer be correct.


This plugin doesn’t use prepared statements and has quite a few SQL queries, which is worrisome, but none appear to be vulnerable.

Failure criteria

  • Execution of unprepared SQL statements

Read more about our failure criteria.