
CCG Manager Security & Risk Analysis
wordpress.org/plugins/ccg-managerA WordPress plugin to manage your CCG collection
Is CCG Manager Safe to Use in 2026?
Generally Safe
Score 85/100CCG Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The ccg-manager plugin version 0.1 presents a seemingly strong security posture based on the provided static analysis and vulnerability history. The absence of identified CVEs, dangerous functions, raw SQL queries, file operations, and external HTTP requests is highly encouraging. Furthermore, the presence of nonce and capability checks, along with the exclusive use of prepared statements for SQL, indicates good development practices in these critical areas.
However, a significant concern arises from the low output escaping rate. With only 24% of the 25 identified outputs being properly escaped, there is a substantial risk of cross-site scripting (XSS) vulnerabilities. This means that user-supplied input, if not properly sanitized before being rendered in the output, could be executed as malicious JavaScript in the user's browser.
While the attack surface is reported as zero, this could be due to the plugin's specific implementation or limitations in the analysis tools. The lack of any recorded vulnerabilities in its history is positive, but it's important to remember that this is a very early version (0.1). The absence of vulnerabilities in a new plugin doesn't guarantee future security. The low output escaping is the most prominent actionable risk identified in the static analysis.
Key Concerns
- Low output escaping rate (24%)
CCG Manager Security Vulnerabilities
CCG Manager Code Analysis
Output Escaping
CCG Manager Attack Surface
WordPress Hooks 11
Maintenance & Trust
CCG Manager Maintenance & Trust
Maintenance Signals
Community Trust
CCG Manager Alternatives
Magic the Gathering Card Tooltips
magic-the-gathering-card-tooltips
Easily transform Magic the Gathering card names into links that show the card image in a tooltip when hovering over them. You can also quickly create …
MtG-Tutor.de CardLinker
mtg-tutorde-cardlinker
This plugin provides some shortcode to easily link MtG Cards and Decks! - Ein Plugin mit dem man ganz leicht MtG Karten und Decks verlinken kann!
MTGPulse deckbox embedding tool
mtgpulse-magic-the-gathering-deckbox-plugin
Facilitates embedding of MTGPulse.com deckboxes on your word press site
CCG Quickly
ccg-quickly
A Free fast access to pages within the Wordpress Dashboard.
Energy Search
energy-search
A Pokemon TCG plugin for Wordpress!
CCG Manager Developer Profile
4 plugins · 1K total installs
How We Detect CCG Manager
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ccg-manager/ccg-manager.phpHTML / DOM Fingerprints
Copyright (C) 2013 Chris Reynolds | hello@chrisreynolds.ioThis program is free software: you can redistribute it and/or modifyit under the terms of the GNU General Public License as published bythe Free Software Foundation, either version 3 of the License, or+7 morename="ccg_man_noncename"id="ccg_man_noncename"name="cost"name="creature-type"name="power"name="rarity"