
Custom Meta Widget Security & Risk Analysis
wordpress.org/plugins/custom-meta-widgetClone of the standard Meta widget plus options to hide log in/out, admin, feed and WordPress.org/custom links.
Is Custom Meta Widget Safe to Use in 2026?
Generally Safe
Score 85/100Custom Meta Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "custom-meta-widget" plugin v1.5.1 exhibits a generally strong security posture, with no reported vulnerabilities or CVEs. The static analysis reveals a very small attack surface with zero identified entry points, which is a positive indicator. The code also demonstrates good practices by using prepared statements for all SQL queries and avoiding dangerous functions or external HTTP requests. However, a significant concern is the low percentage of properly escaped output (52%). This indicates a potential for Cross-Site Scripting (XSS) vulnerabilities, as user-supplied data might be rendered directly to the browser without proper sanitization. Additionally, the complete absence of nonce checks and capability checks on its (albeit zero) entry points, combined with the lack of taint analysis results, leaves room for improvement in confirming robust input validation and authorization mechanisms. While the plugin appears safe based on its history and current analysis, the output escaping weakness is the primary area of concern that warrants attention for future development.
Key Concerns
- Low output escaping percentage (52%)
- No nonce checks
- No capability checks
- No taint analysis data
Custom Meta Widget Security Vulnerabilities
Custom Meta Widget Code Analysis
Output Escaping
Custom Meta Widget Attack Surface
WordPress Hooks 2
Maintenance & Trust
Custom Meta Widget Maintenance & Trust
Maintenance Signals
Community Trust
Custom Meta Widget Alternatives
Simple Taxonomy Ordering
simple-taxonomy-ordering
Quickly and easily reorder taxonomy terms with an easy to use and intuitive drag and drop interface.
Custom top bar
custom-top-bar
You can easily customize page top bar with background color,contact number social links and a custom buttom
Plugin Name: Internal Link Checker
internal-link-checker
Internal Link Checker
Hide Quick Links
hide-quick-links
Hide Top quick links on admin panel
Plug & Play
plug-and-play
Plug and Play our feautures and turn your WordPress Blog into a Highly Interactive, Elegant and Secure Blog.
Custom Meta Widget Developer Profile
11 plugins · 13K total installs
How We Detect Custom Meta Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/custom-meta-widget/custom-meta-widget.phpcustom-meta-widget/custom-meta-widget.php?ver=1.5.1HTML / DOM Fingerprints
customMetaWidgetPlugin: Custom Meta WidgetPlugin URLError: "Show Custom Link" is checked, but either the text or URL for that link are not specified. The link was not displayed because it would be broken. Check the settings for your Custom Meta widget.register+8 moreid="customMetaWidget"name="customMetaWidget"class="widefat"class="check"