Economic & Market News Security & Risk Analysis

wordpress.org/plugins/economic-market-news

Displays a list of economic and general stock markets news, available in more than 20 languages and covering over 40 countries.

200 active installs v1.0.23 PHP + WP 3.1+ Updated Jan 8, 2026
business-newscountry-newseconomic-newseconomy-newsstock-market-news
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Economic & Market News Safe to Use in 2026?

Generally Safe

Score 100/100

Economic & Market News has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "economic-market-news" plugin v1.0.23 demonstrates a generally good security posture based on the provided static analysis and vulnerability history. The plugin does not appear to have any known vulnerabilities (CVEs) recorded, which is a significant positive indicator. Furthermore, the code analysis shows a complete absence of dangerous functions, file operations, and external HTTP requests, all of which are excellent security practices. SQL queries are exclusively handled via prepared statements, and there are no critical or high-severity taint flows identified. The presence of capability checks suggests an awareness of access control, and the reliance on TinyMCE as a bundled library is a common and generally accepted practice.

However, there are some areas for concern. The plugin has a relatively low percentage of properly escaped outputs (66%), indicating a potential for cross-site scripting (XSS) vulnerabilities if user-supplied data is not consistently handled with care. The absence of nonce checks, particularly in conjunction with the presence of shortcodes, could present a risk. Shortcodes are a form of entry point, and while there are no unprotected entry points listed, a lack of nonces on shortcode processing might allow for the exploitation of certain actions if they interact with data in a sensitive manner without proper validation. The vulnerability history being clean is a strong point, but it should not lead to complacency, especially given the output escaping concerns.

In conclusion, "economic-market-news" v1.0.23 has several strong security foundations, particularly in its avoidance of common pitfalls like raw SQL and dangerous functions. The lack of known vulnerabilities is reassuring. The primary area requiring attention is the proper escaping of output to mitigate potential XSS risks. Further investigation into the shortcode implementation and its interaction with data would be prudent, even in the absence of explicit critical taint flows.

Key Concerns

  • Low proper output escaping percentage
  • Missing nonce checks
Vulnerabilities
None known

Economic & Market News Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Economic & Market News Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
42
80 escaped
Nonce Checks
0
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

TinyMCE

Output Escaping

66% escaped122 total outputs
Attack Surface

Economic & Market News Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[economic-market-news] stockdio_economic_news_stockdioplugin.php:928
WordPress Hooks 15
actionenqueue_block_editor_assetssrc\init.php:100
filterblock_categoriessrc\init.php:103
actioninitsrc\init.php:132
actionwidgets_initstockdio_economic_news_overview_widget.php:331
actionadmin_print_stylesstockdio_economic_news_overview_widget.php:335
actionadmin_menustockdio_economic_news_stockdioplugin.php:64
actionadmin_initstockdio_economic_news_stockdioplugin.php:65
actionadmin_noticesstockdio_economic_news_stockdioplugin.php:66
actionadmin_enqueue_scriptsstockdio_economic_news_stockdioplugin.php:69
filtermce_external_pluginsstockdio_economic_news_stockdioplugin.php:185
filtermce_buttonsstockdio_economic_news_stockdioplugin.php:186
actionwp_print_scriptsstockdio_economic_news_stockdioplugin.php:925
actionwp_headstockdio_economic_news_stockdioplugin.php:941
filtermce_buttonsstockdio_economic_news_stockdioplugin.php:1205
filtermce_external_pluginsstockdio_economic_news_stockdioplugin.php:1211
Maintenance & Trust

Economic & Market News Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 8, 2026
PHP min version
Downloads9K

Community Trust

Rating0/100
Number of ratings0
Active installs200
Developer Profile

Economic & Market News Developer Profile

Stockdio

5 plugins · 7K total installs

79
trust score
Avg Security Score
100/100
Avg Patch Time
596 days
View full developer profile
Detection Fingerprints

How We Detect Economic & Market News

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/economic-market-news/assets/stockdio-wp.css/wp-content/plugins/economic-market-news/assets/stockdio-tinymce-button.css/wp-content/plugins/economic-market-news/assets/Sortable.min.js/wp-content/plugins/economic-market-news/assets/stockdio-wp.js/wp-content/plugins/economic-market-news/assets/stockdio_search.css/wp-content/plugins/economic-market-news/assets/stockdio_search.js
Script Paths
/wp-content/plugins/economic-market-news/assets/Sortable.min.js/wp-content/plugins/economic-market-news/assets/stockdio-wp.js/wp-content/plugins/economic-market-news/assets/stockdio_search.js
Version Parameters
stockdio-economic-news-admin-css?ver=stockdio-economic-news-tinymce-css?ver=stockdio-economic-news-sortable?ver=stockdio-economic-news-wp-js?ver=stockdio-economic-news-search-css?ver=stockdio-economic-news-search-js?ver=

HTML / DOM Fingerprints

CSS Classes
stockdio_economic_news_board_form
JS Globals
window.stockdio_economic_news_root_folderwindow.stockdio_economic_news_board_settingswindow.stockdio_marker_economic_news
FAQ

Frequently Asked Questions about Economic & Market News