
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Security & Risk Analysis
wordpress.org/plugins/clonableSeamlessly translate and maintain your multilingual websites. Speed up and simplify your internationalisation with Clonable.
Is Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Safe to Use in 2026?
Generally Safe
Score 100/100Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'clonable' plugin v2.9.5 presents a generally positive security posture with a low immediate risk. The absence of known CVEs and a clean vulnerability history are strong indicators of responsible development and maintenance in the past. Static analysis reveals good practices in output escaping and the presence of capability checks and nonce checks, which are crucial for securing WordPress functionality. Furthermore, the limited attack surface with no unprotected entry points is a significant strength.
However, there are areas for concern. The most notable is the complete lack of prepared statements for all SQL queries, posing a significant risk for SQL injection vulnerabilities, especially as the number of queries increases. The presence of unsanitized paths in taint analysis, although not resulting in critical or high severity flows in this specific analysis, warrants caution. Additionally, while file operations and external HTTP requests themselves aren't inherently risky, their implementation without further context could potentially introduce vulnerabilities if not handled securely.
In conclusion, while the plugin benefits from a clean vulnerability history and good overall escaping, the reliance on raw SQL queries without preparation is a critical weakness that significantly elevates its risk profile. Addressing this, along with careful review of file operations and HTTP requests, would substantially improve its security.
Key Concerns
- Raw SQL queries without prepared statements
- Flows with unsanitized paths in taint analysis
- File operations without clear security context
- External HTTP requests without clear security context
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Security Vulnerabilities
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Release Timeline
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Attack Surface
Shortcodes 3
WordPress Hooks 71
Scheduled Events 1
Maintenance & Trust
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Maintenance & Trust
Maintenance Signals
Community Trust
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Alternatives
Iris Translate
iris-translate
Translate your WordPress site with free automatic translation or SEO-friendly Google Cloud API translation.
Website translator & Language switcher – TranslateJS
translatejs-website-translator
Short Description: Automatically translate your website and add a language switcher in 10 seconds. Boost global SEO with instant localization.
URL Export Addon for TranslatePress
url-export-addon-for-translatepress
Easily export WooCommerce product URLs translated with TranslatePress into a multilingual CSV file for SEO and marketplace use.
Translate WordPress with GTranslate
gtranslate
Translate WordPress with Google Translate multilanguage plugin to make your website multilingual. Complete multilingual SEO solution for WordPress.
Polylang
polylang
Go multilingual in a simple and efficient way. Keep writing posts and taxonomy terms as usual while defining their languages all at once.
Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes. Developer Profile
1 plugin · 300 total installs
How We Detect Clonable – Translate Woocommerce / WordPress website. Multilingual in 5 minutes.
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/clonable/assets/css/clonable-frontend.css/wp-content/plugins/clonable/assets/js/clonable-frontend.js/wp-content/plugins/clonable/assets/js/clonable-frontend.jsclonable/assets/css/clonable-frontend.css?ver=clonable/assets/js/clonable-frontend.js?ver=HTML / DOM Fingerprints
clonable-frontend-language-switcherdata-clonable-idclonableFrontendConfig/wp-json/clonable/v1/settings/wp-json/clonable/v1/language