
WebberZone Snippetz – Header, Body and Footer manager Security & Risk Analysis
wordpress.org/plugins/add-to-allThe ultimate snippet manager for WordPress. Create and manage custom HTML, CSS, or JS code snippets and control where and when they are displayed.
Is WebberZone Snippetz – Header, Body and Footer manager Safe to Use in 2026?
Generally Safe
Score 99/100WebberZone Snippetz – Header, Body and Footer manager has a strong security track record. Known vulnerabilities have been patched promptly.
The 'add-to-all' plugin v2.3.0 exhibits a generally strong security posture, largely due to robust input validation and output escaping mechanisms. The static analysis reveals a minimal attack surface, with no AJAX handlers or REST API routes exposed without proper authentication or permission checks. The code also demonstrates good practices by utilizing prepared statements for the majority of its SQL queries and implementing a significant number of nonce and capability checks. Furthermore, the absence of critical or high-severity taint flows indicates that user-supplied data is being handled with reasonable care to prevent common injection vulnerabilities.
However, there are areas for improvement. While the overall SQL usage is good, 20% of queries are not prepared, which could represent a minor risk if they handle sensitive data. The single file operation, while not explicitly flagged, warrants attention in a real-world scenario for potential path traversal or arbitrary file write vulnerabilities. The plugin's vulnerability history, while currently showing no unpatched vulnerabilities, does indicate a past medium-severity Cross-Site Scripting (XSS) vulnerability. This suggests that while the developers have addressed past issues, vigilance is still required to ensure future updates maintain this standard and prevent regressions.
In conclusion, 'add-to-all' v2.3.0 is a relatively secure plugin, with a good foundation of security practices. The limited attack surface and strong output escaping are significant strengths. The primary concerns revolve around the small percentage of non-prepared SQL queries, the single file operation, and the need to ensure historical XSS vulnerabilities do not resurface. Continued diligent code review and security testing are recommended.
Key Concerns
- Unprotected entry points (AJAX/REST)
- SQL queries not using prepared statements
- Output escaping not 100% proper
- File operations present
- Past medium severity CVE
WebberZone Snippetz – Header, Body and Footer manager Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WebberZone Snippetz <= 2.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting
WebberZone Snippetz – Header, Body and Footer manager Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WebberZone Snippetz – Header, Body and Footer manager Attack Surface
Shortcodes 2
WordPress Hooks 12
Maintenance & Trust
WebberZone Snippetz – Header, Body and Footer manager Maintenance & Trust
Maintenance Signals
Community Trust
WebberZone Snippetz – Header, Body and Footer manager Alternatives
Shortcoder — Create Shortcodes for Anything
shortcoder
Create custom "Shortcodes" easily for HTML, JavaScript, CSS code snippets and use the shortcodes within posts, pages & widgets
Code Embed
simple-embed-code
Code Embed provides a very easy and efficient way to embed code (JavaScript, CSS and HTML) in your posts and pages.
Code Manager
code-manager
Write, test and deploy PHP, JavaScript, CSS and HTML code blocks from the WordPress dashboard.
Code Prettify Syntax Highlighter
code-prettify-syntax-highlighter
Highlighting the code in the post with JavaScript library «google-code-prettify».
WPCode – Insert Headers and Footers + Custom Code Snippets – WordPress Code Manager
insert-headers-and-footers
Easily add code snippets in WordPress. Insert header & footer scripts, add PHP code snippets with conditional logic, insert ads pixel code, and more.
WebberZone Snippetz – Header, Body and Footer manager Developer Profile
31 plugins · 89K total installs
How We Detect WebberZone Snippetz – Header, Body and Footer manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/add-to-all/dist/js/add-to-all.js/wp-content/plugins/add-to-all/dist/css/add-to-all.css/wp-content/plugins/add-to-all/dist/js/add-to-all.jsadd-to-all/dist/js/add-to-all.js?ver=add-to-all/dist/css/add-to-all.css?ver=HTML / DOM Fingerprints
wz-admin-banner-wrapperwz-admin-banner-introwz-admin-banner-eyebrowwz-admin-banner-titlewz-admin-banner-textwz-admin-banner-links-wrapperwz-admin-banner-linkwz-admin-banner-link-currentdata-wz-admin-banner-idwindow.WebberZone