
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Security & Risk Analysis
wordpress.org/plugins/beden-kitle-hesaplamaEklenti sayesinde kullanıcılarınız kendi beden kitle endekslerini hesaplayabilecekler.
Is Beden Kitle Endeksi Hesaplama Aracı Eklentisi Safe to Use in 2026?
Generally Safe
Score 85/100Beden Kitle Endeksi Hesaplama Aracı Eklentisi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "beden-kitle-hesaplama" plugin v1.0.4 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of dangerous functions, SQL injection risks, file operations, and external HTTP requests is commendable. The fact that all SQL queries utilize prepared statements indicates good practice in preventing common database-related vulnerabilities.
However, a significant concern arises from the complete lack of output escaping. This means that any dynamic content displayed by the plugin, even if it doesn't originate from user input, is not being sanitized. If this dynamic content were to be manipulated or contain malicious code, it could lead to cross-site scripting (XSS) vulnerabilities. Additionally, the absence of nonce and capability checks for its single shortcode is a concern, as it implies that the shortcode functionality might be accessible and executable without proper authorization, potentially leading to unintended actions or information disclosure depending on what the shortcode does. The plugin's clean vulnerability history is a positive indicator, suggesting developers have been diligent, but the identified code analysis issues are still relevant risks.
In conclusion, while the plugin avoids many common and critical vulnerabilities, the lack of output escaping and the potential for unauthenticated shortcode execution represent notable weaknesses that should be addressed to improve its overall security. The plugin benefits from a small attack surface and absence of known vulnerabilities, but these are overshadowed by the identified code-level risks.
Key Concerns
- Unescaped output detected
- No capability checks on shortcode
- No nonce checks on shortcode
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Security Vulnerabilities
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Release Timeline
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Code Analysis
Output Escaping
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Maintenance & Trust
Maintenance Signals
Community Trust
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Alternatives
Vücut Kitle Endeksi
vucut-kitle-endeksi
Cinsiyet, boy ve kilo girilerek; Vücut Yüzey Alanı, Yağsız Vücut Ağırlığı, İdeal Vücut Ağırlığı, Vücut Kitle Endeksi değerlerini hesaplayan bir eklent …
WPCode – Insert Headers and Footers + Custom Code Snippets – WordPress Code Manager
insert-headers-and-footers
Easily add code snippets in WordPress. Insert header & footer scripts, add PHP code snippets with conditional logic, insert ads pixel code, and more.
WPS Hide Login
wps-hide-login
Change wp-login.php to anything you want.
Code Snippets
code-snippets
An easy, clean, and simple way to enhance your site with code snippets.
Header Footer Code Manager
header-footer-code-manager
Easily add tracking code snippets, conversion pixels, or other scripts required by third party services for analytics, marketing, or chat features.
Beden Kitle Endeksi Hesaplama Aracı Eklentisi Developer Profile
1 plugin · 30 total installs
How We Detect Beden Kitle Endeksi Hesaplama Aracı Eklentisi
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
widget_ist<iframe src="/wp-content/plugins/beden-kitle-hesaplama/bki/index.html" scrolling="no" marginwidth="0" marginheight="0" frameborder="0" style="width:100%" height="600"></iframe>