
CbrRate Security & Risk Analysis
wordpress.org/plugins/cbrrateShow currency exchange rate Central Bank of Russia Виджет курса валют ЦБ РФ на текущий день.
Is CbrRate Safe to Use in 2026?
Generally Safe
Score 85/100CbrRate has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cbrrate" plugin version 1.1 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any identified CVEs and the lack of critical or high-severity taint flows are positive indicators. Furthermore, the code appears to employ prepared statements for all SQL queries, which is a crucial best practice for preventing SQL injection vulnerabilities.
However, a significant concern arises from the complete lack of output escaping. With 11 total outputs identified and none properly escaped, this presents a substantial risk of Cross-Site Scripting (XSS) vulnerabilities. Any dynamic content displayed to users that originates from the plugin could potentially be manipulated to execute malicious scripts in the user's browser. The absence of nonce checks and capability checks, while not directly leading to specific vulnerabilities in this analysis due to the limited attack surface, means that if new entry points are added in the future, they might not be adequately secured against unauthorized access or tampering.
Key Concerns
- 0% of outputs properly escaped
- No nonce checks found
- No capability checks found
CbrRate Security Vulnerabilities
CbrRate Code Analysis
Output Escaping
CbrRate Attack Surface
WordPress Hooks 5
Scheduled Events 1
Maintenance & Trust
CbrRate Maintenance & Trust
Maintenance Signals
Community Trust
CbrRate Alternatives
MoExRate
moexrate
Show currency rate of Moscow Exchange Виджет курса валют МБ РФ на текущий день.
Currency Converter Widget
currency-converter-widget
Free, fast, and beautiful currency converter widget with 170+ currencies, live exchange rates, and 11 widget styles.
Multi Currency, Currency Switcher, Exchange Rates for WooCommerce – Mudra
woo-exchange-rate
Allows to add exchange rates for WooCommerce store
Exchange Rates
exchange-rates
Currency Converter & Exchange Rates Widgets, easy-to-use, with beautiful UI. 🔑 No API key needed, ❤️ plug and play.
Exchange Rates Widget
exchange-rates-widget
❤️ Is a magic and easy-to-use with beautiful UI widget. Included 190+ world currencies with popular cryptocurrencies.
CbrRate Developer Profile
3 plugins · 60 total installs
How We Detect CbrRate
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cbrrate/style.csscbrrate/style.css?ver=HTML / DOM Fingerprints
itemcbrcbrnamecbrvaluecbrdifcbrlegendid="currency"<div id="currency"><div class="itemcbr"><div class="cbrname"><img width="25" height="30" border="0" alt="USD" src="