Easy Tinymce Editor Add Button Security & Risk Analysis

wordpress.org/plugins/easy-tinymce-editor-add-button

Simple plugin for adding buttons to the html wp panel of the tinymce editor. Features: Ease of use Ability to add any content Unlimited number of b …

40 active installs v2.0.1 PHP 5.3+ WP 4.0+ Updated Dec 11, 2019
buttonseditorhtml-editorshortcodetinymce
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Easy Tinymce Editor Add Button Safe to Use in 2026?

Generally Safe

Score 85/100

Easy Tinymce Editor Add Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "easy-tinymce-editor-add-button" plugin v2.0.1 presents a mixed security posture. On the positive side, there are no recorded CVEs, and the static analysis shows a clean bill of health regarding its attack surface, with zero entry points identified. Furthermore, the absence of dangerous functions, file operations, and external HTTP requests is commendable. The plugin also implements nonce checks, which is a good practice for security.

Key Concerns

  • All output escaping is missing
  • Bundled outdated library (TinyMCE v2.0.1)
  • No capability checks for entry points
  • SQL queries not fully prepared
Vulnerabilities
None known

Easy Tinymce Editor Add Button Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Easy Tinymce Editor Add Button Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
3 prepared
Unescaped Output
23
0 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE2.0.1

SQL Query Safety

60% prepared5 total queries

Output Escaping

0% escaped23 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
updateButtons (includes\Admin.php:68)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Easy Tinymce Editor Add Button Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadmin_print_footer_scriptsincludes\Editor.php:14
actionadmin_noticesincludes\Install.php:31
actioninitincludes\Manager.php:37
actionadmin_menuincludes\Manager.php:38
actionadmin_enqueue_scriptsincludes\Manager.php:39
actionadmin_enqueue_scriptsincludes\Manager.php:40
actioninitincludes\Manager.php:41
actioninitincludes\Manager.php:42
actionadmin_menuincludes\Manager.php:43
Maintenance & Trust

Easy Tinymce Editor Add Button Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedDec 11, 2019
PHP min version5.3
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs40
Developer Profile

Easy Tinymce Editor Add Button Developer Profile

trubine

4 plugins · 70 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Easy Tinymce Editor Add Button

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/easy-tinymce-editor-add-button/js/admin.js
Script Paths
/wp-content/plugins/easy-tinymce-editor-add-button/js/admin.js
Version Parameters
/wp-content/plugins/easy-tinymce-editor-add-button/js/admin.js?ver=2.0.1

HTML / DOM Fingerprints

Data Attributes
eteab_nonce
JS Globals
ETE_BUTTONS
FAQ

Frequently Asked Questions about Easy Tinymce Editor Add Button