
addfreespace Security & Risk Analysis
wordpress.org/plugins/addfreespace記事上下に自由な記述ができるフリースペースを加えることができます。You can add freespace.
Is addfreespace Safe to Use in 2026?
Generally Safe
Score 85/100addfreespace has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'addfreespace' plugin v0.1.3 exhibits a seemingly low-risk profile based on the provided static analysis and vulnerability history. The lack of any identified entry points (AJAX handlers, REST API routes, shortcodes, cron events) significantly reduces the potential attack surface. Furthermore, the absence of dangerous functions, SQL queries not using prepared statements, file operations, and external HTTP requests are all positive security indicators.
However, a critical concern emerges from the static analysis: 100% of the identified output escaping is improperly handled. This means that any data rendered by the plugin could potentially be vulnerable to cross-site scripting (XSS) attacks. While taint analysis found no unsanitized paths, the lack of proper output escaping on all identified outputs is a significant weakness that could be exploited if any user-controlled data is ever rendered.
Given the lack of historical vulnerabilities and the minimal attack surface, the plugin's overall security posture appears strong in many areas. Nevertheless, the universal failure to properly escape output presents a clear and actionable risk that requires immediate attention to prevent potential XSS vulnerabilities. Addressing this issue would significantly bolster the plugin's security.
Key Concerns
- Improper output escaping on all outputs
addfreespace Security Vulnerabilities
addfreespace Code Analysis
Output Escaping
addfreespace Attack Surface
WordPress Hooks 20
Maintenance & Trust
addfreespace Maintenance & Trust
Maintenance Signals
Community Trust
addfreespace Alternatives
No alternatives data available yet.
addfreespace Developer Profile
2 plugins · 20 total installs
How We Detect addfreespace
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/addfreespace/addfreespace.css/wp-content/plugins/addfreespace/addfreespace_functions.js/wp-content/plugins/addfreespace/addfreespace_const.js/wp-content/plugins/addfreespace/jquery.numeric.jsHTML / DOM Fingerprints
addfreespace_wrapexplain_addfreespaceaddfreespace_simple_wrapbtn_submitaddfreespace_ab_wrapaddfreespace_footeraddfreespace_createdbyid="addfreespace_wrap"id="disp_mytitle"id="addfreespace_simple_wrap"id="addfreespace_ab_wrap"id="addfreespace_footer"id="urikomi"+8 moreADDFREESPACE_DEBUG