
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Security & Risk Analysis
wordpress.org/plugins/corona-stats-liveCorona Stats Live - is a WordPress plugin exclusively developed to provide upto date corona virus stats. You can take full advantage of this plugin to …
Is Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Safe to Use in 2026?
Generally Safe
Score 85/100Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "corona-stats-live" plugin v1.2.0 exhibits a generally positive security posture based on the static analysis. It shows no known vulnerabilities (CVEs), which is a significant strength. The absence of dangerous functions, raw SQL queries, file operations, and external HTTP requests (though it makes two, their nature isn't specified but assumed benign given no taint analysis findings) are also good indicators. The plugin also utilizes prepared statements for its SQL queries, which is a best practice for preventing SQL injection. However, there are areas of concern. A significant portion (31%) of output escaping is missing, which could lead to Cross-Site Scripting (XSS) vulnerabilities if the plugin handles user-supplied data that is then displayed without proper sanitization. The lack of nonce checks and capability checks across all entry points (AJAX, REST API, shortcodes) is a notable weakness, potentially allowing unauthorized actions if the plugin's functionalities are exploitable. The bundled DataTables library, while common, should be kept updated to prevent known vulnerabilities within the library itself.
Key Concerns
- Missing output escaping
- Missing nonce checks on entry points
- Missing capability checks on entry points
- Bundled potentially outdated library (DataTables)
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Security Vulnerabilities
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Code Analysis
Bundled Libraries
Output Escaping
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Attack Surface
Shortcodes 7
WordPress Hooks 3
Maintenance & Trust
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Maintenance & Trust
Maintenance Signals
Community Trust
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Alternatives
South African COVID19 Banner
corona-virus-covid19-banner
Comply with new South African Covid-19 regulations requiring all websites ending in .ZA to show a link to the official government page.
VirusWeather Covid-19 Coronavirus
virusweather
Personalized by IP address PNG banner shows local covid-19 A.I. calculated threat level and live coronavirus stats for 10000+ local areas world-wide
Coronavirus Info
coronavirus-info
This plugin displays the COVID-19 real-time data, top-headline news and finance impact, quantitative geographical mapping and forecasting in the whole …
COVID19TRACKER
covid19-real-time-tracker
COVID19TRACKER displays real time covid19 data on your widget, using the lmao.ninja API. IMPORTANT: This plugin relays on an external service by send …
Zone Pandemic Covid19
zone-pandemic-covid-19
This plugin provides shortcode and widgets that can displays the latest data of the covid19 in the whole world.
Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite Developer Profile
1 plugin · 10 total installs
How We Detect Corona Stats Live – Corona Virus COVID-19 Live Stats for WordPress Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/corona-stats-live/css/bootstrap.min.css/wp-content/plugins/corona-stats-live/css/Chart.min.css/wp-content/plugins/corona-stats-live/css/jquery.dataTables.css/wp-content/plugins/corona-stats-live/css/csl-styles.css/wp-content/plugins/corona-stats-live/js/Chart.min.js/wp-content/plugins/corona-stats-live/js/jquery.dataTables.js/wp-content/plugins/corona-stats-live/js/Chart.bundle.js/wp-content/plugins/corona-stats-live/js/utils.js+1 more/wp-content/plugins/corona-stats-live/js/Chart.min.js/wp-content/plugins/corona-stats-live/js/jquery.dataTables.js/wp-content/plugins/corona-stats-live/js/Chart.bundle.js/wp-content/plugins/corona-stats-live/js/utils.js/wp-content/plugins/corona-stats-live/js/csl-custom.jscorona-stats-live/css/bootstrap.min.css?ver=corona-stats-live/css/Chart.min.css?ver=corona-stats-live/css/jquery.dataTables.css?ver=corona-stats-live/css/csl-styles.css?ver=corona-stats-live/js/Chart.min.js?ver=corona-stats-live/js/jquery.dataTables.js?ver=corona-stats-live/js/Chart.bundle.js?ver=corona-stats-live/js/utils.js?ver=corona-stats-live/js/csl-custom.js?ver=HTML / DOM Fingerprints
[csl_covid_table][csl_covid_stats][csl_covid_widget][csl_covid_sidebar]