
Elimina Diacritice Security & Risk Analysis
wordpress.org/plugins/elimina-diacriticeElimina fara efort semnele cu diacritice din textele in limba romana adaugate prin editorul de text wordpress.
Is Elimina Diacritice Safe to Use in 2026?
Generally Safe
Score 85/100Elimina Diacritice has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "elimina-diacritice" plugin version 1.1.0 exhibits a generally strong security posture based on the static analysis provided. The absence of known CVEs and a clean vulnerability history are positive indicators. The plugin also scores well on several good security practices, including zero dangerous functions, SQL queries exclusively using prepared statements, no file operations, and no external HTTP requests. However, a significant concern arises from the fact that 100% of the identified output operations are not properly escaped. This could lead to cross-site scripting (XSS) vulnerabilities if the output is user-controllable and displayed without proper sanitization.
While the attack surface is reported as zero entry points, this assessment seems to be based on the absence of explicitly defined AJAX handlers, REST API routes, shortcodes, and cron events. The lack of nonce and capability checks across all identified entry points is a significant weakness. If any unexpected or implicit entry points exist, they would be entirely unprotected. The taint analysis showing zero flows is also positive, but this could be less meaningful if the plugin has a very limited scope and minimal interaction with external data. Overall, the plugin demonstrates good development hygiene in some areas but has critical gaps in output sanitization and authorization checks that require immediate attention.
Key Concerns
- Output escaping is not properly implemented
- No nonce checks on entry points
- No capability checks on entry points
Elimina Diacritice Security Vulnerabilities
Elimina Diacritice Code Analysis
Output Escaping
Elimina Diacritice Attack Surface
WordPress Hooks 4
Maintenance & Trust
Elimina Diacritice Maintenance & Trust
Maintenance Signals
Community Trust
Elimina Diacritice Alternatives
Plugin Name: RO Slugs
ro-slugs
Cleans up over 30 problematic characters from your slugs that the original wordpress does not clean:
Virgulă To Sedilă
virgula-to-sedila
Înlocuieşte diacriticele "corecte", cu virgulă, cu cele "incorecte", cu sedilă, dar care se afişează corespunzător şi în Windows X …
Elimina Diacritice Developer Profile
1 plugin · 30 total installs
How We Detect Elimina Diacritice
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/elimina-diacritice/js/admin.js/wp-content/plugins/elimina-diacritice/js/admin.jselimina-diacritice/js/admin.js?ver=1.1.0HTML / DOM Fingerprints
wpedr_buttonWPEDRData<a href="#" class="button" id="wpedr_button" aria-label="Elimina Diacritice">Elimina Diacritice</a>