Current Year Shortcode VICT Security & Risk Analysis

wordpress.org/plugins/current-year-shortcode-vict

A shortcode to display the current year. Never worry about updating the current year on your site again.

800 active installs v1.19 PHP 8.0+ WP 6.0+ Updated Dec 3, 2025
current-yearfooter-shortcodeshortcodevictvoordelig-ict
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Current Year Shortcode VICT Safe to Use in 2026?

Generally Safe

Score 100/100

Current Year Shortcode VICT has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The plugin 'current-year-shortcode-vict' v1.19 exhibits a strong security posture based on the provided static analysis and vulnerability history. The code does not appear to use dangerous functions, all SQL queries are prepared, and outputs are properly escaped. Furthermore, there are no file operations or external HTTP requests, which eliminates common attack vectors. The absence of known vulnerabilities, including critical or high severity ones, further reinforces its security. The plugin's attack surface is minimal, consisting solely of a shortcode, and importantly, this shortcode is not directly exposed to unauthenticated access in the analyzed data. The lack of any identified taint flows or vulnerabilities in its history suggests a well-maintained and secure codebase. However, the absence of nonce and capability checks, while not an immediate risk given the limited attack surface and lack of identified taint, could represent a potential future concern if the plugin's functionality were to expand or if new attack patterns emerged that could exploit such entry points without proper authorization enforcement. Overall, this plugin appears to be a secure option with no immediately exploitable flaws.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Current Year Shortcode VICT Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Current Year Shortcode VICT Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Current Year Shortcode VICT Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[vict_year] current-year-shortcode-vict.php:22
Maintenance & Trust

Current Year Shortcode VICT Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 3, 2025
PHP min version8.0
Downloads10K

Community Trust

Rating100/100
Number of ratings4
Active installs800
Developer Profile

Current Year Shortcode VICT Developer Profile

Voordelig ICT

5 plugins · 850 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Current Year Shortcode VICT

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
[vict_year]
FAQ

Frequently Asked Questions about Current Year Shortcode VICT