
ContentBox Security & Risk Analysis
wordpress.org/plugins/contentboxWP-ContentBox - это плагин обеспечивающий автоматическую синхронизацию готовых текстов из сервиса contentBox на ваш сайт.
Is ContentBox Safe to Use in 2026?
Generally Safe
Score 85/100ContentBox has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "contentbox" plugin version 1.1 exhibits a generally positive security posture based on the provided static analysis. The absence of any known CVEs or past vulnerabilities is a strong indicator of diligent security practices and thorough code review over time. The plugin also demonstrates good habits by utilizing prepared statements for all SQL queries and implementing nonce and capability checks where applicable. Furthermore, the lack of identified taint flows with unsanitized paths suggests that the plugin is likely not introducing common injection vulnerabilities.
However, there are areas for improvement. The most significant concern is the low percentage (38%) of properly escaped output. This indicates that user-supplied or dynamic data might be rendered directly into the HTML, creating a risk of Cross-Site Scripting (XSS) vulnerabilities, especially if the plugin handles any user-generated content or data from external sources. While the attack surface is reported as zero unprotected entry points, the presence of file operations without further context could also be a point of concern if not handled securely. Overall, while the plugin is currently unblemished by known vulnerabilities and follows some best practices, the output escaping issue warrants attention to prevent potential XSS attacks.
Key Concerns
- Low percentage of properly escaped output
ContentBox Security Vulnerabilities
ContentBox Code Analysis
Output Escaping
Data Flow Analysis
ContentBox Attack Surface
WordPress Hooks 5
Scheduled Events 1
Maintenance & Trust
ContentBox Maintenance & Trust
Maintenance Signals
Community Trust
ContentBox Alternatives
YARPP – Yet Another Related Posts Plugin
yet-another-related-posts-plugin
The best WordPress plugin for displaying related posts. Simple and flexible, with a powerful proven algorithm and inbuilt caching.
Contextual Related Posts
contextual-related-posts
Keep visitors on your site longer with intelligent, fast-loading, contextually related posts. Block, shortcode, custom post type and widget ready.
Related Posts for WordPress
related-posts-for-wp
The best WordPress plugin for related posts. Simple, flexible, powerful algorithm, and built-in caching. Fully setup with only 1 click!
Koala AI
koala-ai
Koala AI offers a platform of tools for SEOs and content creators.
Copyrighted Post
wp-copyrighted-post
Adds copyright notice in the end of each post of your blog.
ContentBox Developer Profile
1 plugin · 10 total installs
How We Detect ContentBox
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/contentbox/inc/contentbox.jscontentbox/style.css?ver=contentbox/script.js?ver=HTML / DOM Fingerprints
contentbox-form<!-- Contentbox ID: --><!-- Contentbox -->name="contentbox_id"id="contentbox_id"contentbox_admin_url[contentbox_api_sync][contentbox_api_sync_post][contentbox_category_sync]