CustomEasy Security & Risk Analysis

wordpress.org/plugins/customeasy

Gives you a quick and superlight way to inject codes in your website's HEAD or FOOTER

10 active installs v1.0.2 PHP 7.0+ WP 5.0+ Updated Dec 10, 2024
code-injectioncsscustom-codejavascriptjquery
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CustomEasy Safe to Use in 2026?

Generally Safe

Score 92/100

CustomEasy has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "customeasy" v1.0.2 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of any identified CVEs in its history, along with no recorded common vulnerability types, suggests a history of secure development or effective patching. Furthermore, the plugin demonstrates good practices by having no identified dangerous functions, no file operations, and no external HTTP requests, all of which limit potential attack vectors. The consistent use of prepared statements for SQL queries is a significant strength, preventing common SQL injection vulnerabilities.

Key Concerns

  • Unescaped output in multiple locations
Vulnerabilities
None known

CustomEasy Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

CustomEasy Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
11
0 escaped
Nonce Checks
2
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped11 total outputs
Data Flows
All sanitized

Data Flow Analysis

1 flows
<global_codes> (global_codes.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

CustomEasy Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadmin_menucustomEasy.php:41
actionwp_headcustomEasy.php:77
actionwp_footercustomEasy.php:104
filterplugin_row_metacustomEasy.php:124
actionadmin_initmetabox.php:19
actionsave_postmetabox.php:131
Maintenance & Trust

CustomEasy Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 10, 2024
PHP min version7.0
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

CustomEasy Developer Profile

LCweb

4 plugins · 90 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CustomEasy

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/customeasy/js/ace/src-min/ace.js

HTML / DOM Fingerprints

CSS Classes
lcce_check_lcweb_pjcts_link
HTML Comments
SYNTAX HIGLINER
Data Attributes
data-mode="ace/mode/html"data-theme="ace/theme/tomorrow"
JS Globals
ace
FAQ

Frequently Asked Questions about CustomEasy