
Fontsize Selector Widget Security & Risk Analysis
wordpress.org/plugins/fontsize-selectorFont size selection form Plugin by Tradesouthwest uses a widget to add form on page which provides a drop-down selector to select font sizes from.
Is Fontsize Selector Widget Safe to Use in 2026?
Generally Safe
Score 100/100Fontsize Selector Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The fontsize-selector plugin v0.51 exhibits a strong security posture based on the provided static analysis. It demonstrates excellent practices by having no known vulnerabilities, no dangerous functions, and all SQL queries utilizing prepared statements. The absence of external HTTP requests, file operations, and a low count of AJAX and REST API endpoints further contribute to a reduced attack surface. The presence of a nonce check is also a positive indicator of security awareness.
However, there are some areas that warrant attention. The taint analysis revealed two flows with unsanitized paths, which, while not classified as critical or high severity, represent a potential risk if these paths are exposed to user input. Additionally, the output escaping is only properly implemented in 65% of cases, meaning a significant portion of output might be vulnerable to cross-site scripting (XSS) if not handled correctly within the application context. The lack of capability checks on its entry points is also a concern, as it implies that any user, regardless of their role, could potentially interact with the plugin's functionalities.
Overall, the plugin has a solid foundation with minimal external threats and good internal practices regarding data handling. The vulnerability history being empty is a significant strength. Nevertheless, the identified taint flows and imperfect output escaping are weaknesses that could be exploited. The absence of capability checks on entry points is the most significant potential risk, as it doesn't leverage WordPress's role-based access control. Addressing these specific areas would elevate the plugin's security to a more robust level.
Key Concerns
- Unsanitized paths in taint flows
- Inadequately escaped output
- Lack of capability checks on entry points
Fontsize Selector Widget Security Vulnerabilities
Fontsize Selector Widget Code Analysis
Output Escaping
Data Flow Analysis
Fontsize Selector Widget Attack Surface
WordPress Hooks 7
Maintenance & Trust
Fontsize Selector Widget Maintenance & Trust
Maintenance Signals
Community Trust
Fontsize Selector Widget Alternatives
Zeno Font Resizer
zeno-font-resizer
Zeno Font Resizer allows the visitors of your website to change the font size of your text.
Accessibility Font Resizer
accessibility-font-resizer
Make accessibility better for your visitors by enabling them to resize the text on your website and make it bigger.
Font Size
font-size
Font Size is easy to use. Font Size WordPress plugin allows you to change the size of basic HTML elements.
WP-Font-Resizer
wp-font-resizer
WP-Font-Resizer is a plugin that helps users to increase or decrease font size and also reset default font size.
Visual Editor Font Size
visual-editor-font-size
Allows you to change the font size of the visual editor
Fontsize Selector Widget Developer Profile
17 plugins · 2K total installs
How We Detect Fontsize Selector Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/fontsize-selector/fontsize-selector-style.cssfontsize-selector/fontsize-selector-style.css?ver=