
Blogtimes Security & Risk Analysis
wordpress.org/plugins/blogtimesThis plugin generates a bar graph image showing when posts are made during a period of time. For this to work <code>wp-images/blogtimes.png</code> must be writable by the web server. Original code by Sanjay Sheth of sastools.com.
Is Blogtimes Safe to Use in 2026?
Generally Safe
Score 85/100Blogtimes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "blogtimes" plugin v0.2 exhibits a strong static security posture, with no identified attack surface points, dangerous functions, or taint flows. The absence of SQL queries that do not use prepared statements, coupled with 100% properly escaped output, suggests a diligent approach to secure coding practices in these areas. Furthermore, the plugin has no recorded vulnerability history, including CVEs, indicating a clean track record. However, the complete lack of nonce and capability checks, along with no authentication checks on any potential (though currently non-existent) entry points, represents a significant weakness. While there are no immediate vulnerabilities evident in the current version, this lack of authorization checks would be a critical concern if any entry points were to be introduced in future updates. The current version appears safe due to its limited functionality and attack surface, but future development must address authorization and authentication mechanisms.
Key Concerns
- Missing nonce checks
- Missing capability checks
- No auth checks on entry points
- 100% SQL not using prepared statements
Blogtimes Security Vulnerabilities
Blogtimes Code Analysis
SQL Query Safety
Blogtimes Attack Surface
WordPress Hooks 1
Maintenance & Trust
Blogtimes Maintenance & Trust
Maintenance Signals
Community Trust
Blogtimes Alternatives
No alternatives data available yet.
Blogtimes Developer Profile
393 plugins · 20.8M total installs
How We Detect Blogtimes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.