
ACF: Rus-To-Lat Security & Risk Analysis
wordpress.org/plugins/acf-rus-to-latAdvanced Custom Fields (ACF): очищает имена дополнительных полей от ненужных символов и преобразует в латынь.
Is ACF: Rus-To-Lat Safe to Use in 2026?
Generally Safe
Score 85/100ACF: Rus-To-Lat has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "acf-rus-to-lat" v2.0.0 plugin exhibits a generally positive security posture based on the provided static analysis. The plugin has a zero attack surface, meaning there are no exposed AJAX handlers, REST API routes, shortcodes, or cron events that could be directly exploited. Furthermore, the code signals indicate a strong adherence to secure coding practices, with no dangerous functions, no raw SQL queries, and no external HTTP requests. The presence of nonce checks is also a good sign for data integrity. However, a notable concern is the relatively low percentage of properly escaped output (43%). This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not handled correctly before being displayed to the user.
The vulnerability history is clean, with no recorded CVEs. This, combined with the lack of critical or high-severity taint flows and a small attack surface, suggests that the plugin is currently not a known target for significant exploits. The absence of bundled libraries also removes a potential avenue for vulnerabilities from outdated third-party code. Despite the lack of direct vulnerabilities identified in the analysis, the unescaped output remains a potential weak point that could be exploited under certain conditions.
In conclusion, the "acf-rus-to-lat" v2.0.0 plugin demonstrates strengths in its minimal attack surface and lack of known vulnerabilities. However, the unescaped output presents a tangible risk that should be addressed to further strengthen its security. Continued vigilance and regular security audits are recommended, especially as the plugin evolves.
Key Concerns
- Low output escaping percentage
ACF: Rus-To-Lat Security Vulnerabilities
ACF: Rus-To-Lat Code Analysis
Output Escaping
ACF: Rus-To-Lat Attack Surface
WordPress Hooks 5
Maintenance & Trust
ACF: Rus-To-Lat Maintenance & Trust
Maintenance Signals
Community Trust
ACF: Rus-To-Lat Alternatives
Cyrlitera – Transliteration of Links and File Names
cyrlitera
Convert Cyrillic and Georgian URLs and file names to Latin. Works for all post types, pages, and terms. Custom characters, URL redirects & more.
Cyr to Lat Reloaded – Transliteration of Links and File Names
cyr-and-lat
Converts Cyrillic, Georgian, and Greek URLs and file names into readable Latin characters.
Advanced Custom Fields: Typography Field
acf-typography-field
A Typography Add-on for the Advanced Custom Fields Plugin.
Transliterator – Multilingual and Multi-script Text Conversion
serbian-transliteration
Universal transliteration for permalinks, posts, tags, categories, media, files, search and more, rendering them universally readable.
Geo to Lat
geo-to-lat
Converts Georgian characters in post, page and term slugs to Latin characters.
ACF: Rus-To-Lat Developer Profile
1 plugin · 2K total installs
How We Detect ACF: Rus-To-Lat
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.