Convertizer.fr Security & Risk Analysis

wordpress.org/plugins/convertizerfr

Convertizer, Créez un lien avec vos clients.

0 active installs v1.3.2 PHP + WP 3.9.0+ Updated Jan 4, 2021
convertizer-fr-integration-kit
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Convertizer.fr Safe to Use in 2026?

Generally Safe

Score 85/100

Convertizer.fr has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The static analysis of the "convertizerfr" plugin v1.3.2 reveals an exceptionally small attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events. This lack of direct entry points is a strong positive security indicator. Furthermore, the absence of dangerous functions, file operations, and external HTTP requests, along with the use of prepared statements for all SQL queries, demonstrates adherence to several secure coding practices.

However, a significant concern arises from the output escaping signal, where 100% of the 12 identified outputs are not properly escaped. This suggests a high risk of Cross-Site Scripting (XSS) vulnerabilities if any of the plugin's data, even indirectly, can be controlled by an attacker. The complete lack of nonce checks and capability checks, combined with zero detected taint flows, is unusual. While this could mean the plugin is extremely simple and has no user-controllable input, it also prevents a thorough assessment of potential vulnerabilities if the plugin were to evolve or have hidden interaction points.

The vulnerability history is also completely clean, with zero known CVEs. This, in conjunction with the limited attack surface and lack of critical code signals, suggests that up to this version, the plugin has been relatively secure or has not been a target. However, the identified unescaped output is a critical weakness that overshadows the otherwise clean security profile. The plugin's strengths lie in its minimal attack surface and secure SQL handling, but its weaknesses in output sanitization present a clear and present danger.

Key Concerns

  • Output escaping is not implemented
  • No nonce checks detected
  • No capability checks detected
  • No taint flows analyzed
Vulnerabilities
None known

Convertizer.fr Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Convertizer.fr Release Timeline

v1.2
v1.1
v1.0
Code Analysis
Analyzed Apr 16, 2026

Convertizer.fr Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped12 total outputs
Attack Surface

Convertizer.fr Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
filterscript_loader_tagindex.php:17
actionwp_dashboard_setupindex.php:33
actionwp_enqueue_scriptsindex.php:34
actionadmin_enqueue_scriptsindex.php:36
actionadmin_menuindex.php:37
Maintenance & Trust

Convertizer.fr Maintenance & Trust

Maintenance Signals

WordPress version tested5.6.17
Last updatedJan 4, 2021
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Alternatives

Convertizer.fr Alternatives

No alternatives data available yet.

Developer Profile

Convertizer.fr Developer Profile

Bassem Rabia

6 plugins · 130 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Convertizer.fr

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/convertizerfr/css/admin.css
Script Paths
https://api.convertizer.fr/partner.js
Version Parameters
convertizerfr/style.css?ver=convertizer-async/partner.js?v=

HTML / DOM Fingerprints

CSS Classes
WordPressLiveSupportDashboardWordPressLiveSupportDashboardSettingsconvertizerfr
Data Attributes
id="convertizerfr"
JS Globals
jQuery
FAQ

Frequently Asked Questions about Convertizer.fr