
CTL Battleship Minesweeper Lite Security & Risk Analysis
wordpress.org/plugins/ctl-battleship-minesweeper-liteAdd Battleship Minesweeper Lite to CTL Arcade Lite plugin
Is CTL Battleship Minesweeper Lite Safe to Use in 2026?
Generally Safe
Score 85/100CTL Battleship Minesweeper Lite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of ctl-battleship-minesweeper-lite v1.0 reveals a plugin with a seemingly small attack surface. There are no apparent AJAX handlers, REST API routes, shortcodes, or cron events, and the total number of entry points is zero. This lack of exposure is a positive security indicator. However, the code analysis does highlight several areas of concern. A significant percentage of SQL queries are not using prepared statements, which exposes the plugin to potential SQL injection vulnerabilities. Furthermore, only 20% of output is properly escaped, leaving room for cross-site scripting (XSS) attacks if user-supplied data is displayed without adequate sanitization. The absence of nonce checks on AJAX (though there are no AJAX handlers listed, this is a general good practice for any potential future additions) and the presence of only one capability check indicate a limited use of WordPress's built-in security mechanisms.
The plugin's vulnerability history is clean, with no recorded CVEs. This, combined with the lack of taint analysis findings, suggests that the plugin, in its current state, has not been identified as having critical or high-severity flaws. The bundled library, jQuery v2.0.3, is quite outdated, which can be a vector for known vulnerabilities if those versions are exploitable. Overall, while the plugin exhibits a good practice of minimizing its attack surface, the lack of secure coding practices in SQL handling and output escaping, coupled with an outdated bundled library, presents notable risks that require attention.
Key Concerns
- Raw SQL queries present
- Low output escaping percentage
- Bundled outdated library
- Limited capability checks
CTL Battleship Minesweeper Lite Security Vulnerabilities
CTL Battleship Minesweeper Lite Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
CTL Battleship Minesweeper Lite Attack Surface
WordPress Hooks 2
Maintenance & Trust
CTL Battleship Minesweeper Lite Maintenance & Trust
Maintenance Signals
Community Trust
CTL Battleship Minesweeper Lite Alternatives
CTL Playful Kitty Lite
ctl-playful-kitty-c2-lite
Add Playful Kitty Lite to CTL Arcade Lite plugin
Miniclip Games Arcade
miniclip-games
Create your own games arcade using free content from Miniclip.com
WI Games Shortcode
wi-games-shortcode
This plug-in will help you to place any game which you can find on wigames.net without problems
WI Games widget Plugin
wi-games-widget
This plugin will help you to smoothly integrate WI Games widget to your website.
PuzzleMe – Interactive Puzzles for WordPress – Easily publish crosswords, quizzes, word searches and more
puzzleme
PuzzleMe makes it easy to add interactive games to your WordPress website - no coding required.
CTL Battleship Minesweeper Lite Developer Profile
2 plugins · 30 total installs
How We Detect CTL Battleship Minesweeper Lite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ctl-battleship-minesweeper-lite/css/style.css/wp-content/plugins/ctl-battleship-minesweeper-lite/js/script.js/wp-content/plugins/ctl-battleship-minesweeper-lite/images//wp-content/plugins/ctl-battleship-minesweeper-lite/js/script.jsctl-battleship-minesweeper-lite/css/style.css?ver=ctl-battleship-minesweeper-lite/js/script.js?ver=HTML / DOM Fingerprints
ctl_arcade_lite_game_ctl_arcade_lite_gamesctl_arcade_lite_games_about_usctl-plugins