
COVID19 – Coronavirus Outbreak Data Security & Risk Analysis
wordpress.org/plugins/ce-coronaCoronavirus disease (COVID-19) is an infectious disease caused by a new virus.
Is COVID19 – Coronavirus Outbreak Data Safe to Use in 2026?
Generally Safe
Score 85/100COVID19 – Coronavirus Outbreak Data has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ce-corona" v0.7.0 plugin presents a generally positive security posture based on the provided static analysis. The absence of any known CVEs in its history, coupled with the lack of detected dangerous functions, raw SQL queries, or external HTTP requests, suggests a focus on secure coding practices. Furthermore, the plugin exhibits no detected taint flows, indicating that untrusted data is not being mishandled in ways that could lead to exploitation.
However, there are notable areas for improvement. The most significant concern is the low percentage of properly escaped output (25%). This means a substantial portion of dynamic content displayed to users may be vulnerable to Cross-Site Scripting (XSS) attacks, allowing an attacker to inject malicious scripts into web pages viewed by other users. Additionally, the complete absence of nonce and capability checks across all entry points (AJAX handlers, REST API routes, and shortcodes) is a critical weakness. This allows any authenticated user, regardless of their role or permissions, to potentially trigger plugin functionalities, opening the door to unauthorized actions or information disclosure.
While the vulnerability history is clean, this can sometimes indicate a lack of past scrutiny or a plugin that hasn't been extensively tested for vulnerabilities. The strengths lie in the foundation of avoiding common pitfalls like raw SQL and dangerous functions. The weaknesses, particularly the unescaped output and lack of authorization checks, represent significant security risks that need to be addressed to improve the plugin's overall security.
Key Concerns
- Unescaped output detected
- Missing nonce checks on all entry points
- Missing capability checks on all entry points
COVID19 – Coronavirus Outbreak Data Security Vulnerabilities
COVID19 – Coronavirus Outbreak Data Code Analysis
Output Escaping
COVID19 – Coronavirus Outbreak Data Attack Surface
Shortcodes 3
WordPress Hooks 3
Maintenance & Trust
COVID19 – Coronavirus Outbreak Data Maintenance & Trust
Maintenance Signals
Community Trust
COVID19 – Coronavirus Outbreak Data Alternatives
South African COVID19 Banner
corona-virus-covid19-banner
Comply with new South African Covid-19 regulations requiring all websites ending in .ZA to show a link to the official government page.
VirusWeather Covid-19 Coronavirus
virusweather
Personalized by IP address PNG banner shows local covid-19 A.I. calculated threat level and live coronavirus stats for 10000+ local areas world-wide
Coronavirus Info
coronavirus-info
This plugin displays the COVID-19 real-time data, top-headline news and finance impact, quantitative geographical mapping and forecasting in the whole …
Zone Pandemic Covid19
zone-pandemic-covid-19
This plugin provides shortcode and widgets that can displays the latest data of the covid19 in the whole world.
Corona Virus Data
corona-virus-data
This plugin displays the Coronavirus case data through shortcodes [cov2019] [cov2019all] or [cov2019map] in your WordPress post or page.
COVID19 – Coronavirus Outbreak Data Developer Profile
2 plugins · 210 total installs
How We Detect COVID19 – Coronavirus Outbreak Data
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ce-corona/assets/css/ce-corona-global.css/wp-content/plugins/ce-corona/assets/css/ce-corona-admin.css/wp-content/plugins/ce-corona/assets/css/corona-fonts.css/wp-content/plugins/ce-corona/assets/js/corona-admin.js/wp-content/plugins/ce-corona/assets/css/corona.css/wp-content/plugins/ce-corona/assets/css/corona-wp-widget.css/wp-content/plugins/ce-corona/assets/js/jquery-countTo.js/wp-content/plugins/ce-corona/assets/js/widget.js+6 more/wp-content/plugins/ce-corona/assets/js/corona-admin.js/wp-content/plugins/ce-corona/assets/js/jquery-countTo.js/wp-content/plugins/ce-corona/assets/js/widget.js/wp-content/plugins/ce-corona/assets/js/corona.js/wp-content/plugins/ce-corona/assets/js/ce-numberformat.js/wp-content/plugins/ce-corona/assets/js/countrywise.js+1 morece-corona/assets/css/ce-corona-global.css?ver=ce-corona/assets/css/ce-corona-admin.css?ver=ce-corona/assets/css/corona-fonts.css?ver=ce-corona/assets/js/corona-admin.js?ver=ce-corona/assets/css/corona.css?ver=ce-corona/assets/css/corona-wp-widget.css?ver=ce-corona/assets/js/jquery-countTo.js?ver=ce-corona/assets/js/widget.js?ver=ce-corona/assets/js/corona.js?ver=ce-corona/assets/css/corona-countrywise.css?ver=ce-corona/assets/js/ce-numberformat.js?ver=ce-corona/assets/js/countrywise.js?ver=ce-corona/assets/css/cegraph.css?ver=ce-corona/assets/js/cegraph.js?ver=HTML / DOM Fingerprints
ce-corona-widgetCeCoronaDataTable