
Sport livescores: foootball and basketball results, fixtures and standings Security & Risk Analysis
wordpress.org/plugins/football-standingsAdd auto-updated live scores information about more than 3000 football and basketball tournaments and standings with ease!
Is Sport livescores: foootball and basketball results, fixtures and standings Safe to Use in 2026?
Generally Safe
Score 92/100Sport livescores: foootball and basketball results, fixtures and standings has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "football-standings" plugin, at version 1.0.1, exhibits a strong security posture based on the provided static analysis. All identified SQL queries are properly prepared, and all output is correctly escaped, indicating good development practices regarding common web vulnerabilities. The absence of external HTTP requests and dangerous functions further strengthens its security. The plugin also presents a minimal attack surface with only one shortcode and no identified AJAX handlers, REST API routes, or cron events without proper checks. The lack of any recorded vulnerabilities in its history further reinforces this positive assessment.
However, a significant concern arises from the complete absence of nonce checks and capability checks. While the static analysis did not identify any AJAX handlers or REST API routes that *require* these checks due to their limited number, their complete omission means that if any such entry points were to be added in future versions without these safeguards, they would be immediately vulnerable. Similarly, the single shortcode, while currently not identified as an entry point requiring authentication or authorization checks, could become a risk if it were to handle sensitive data or actions in the future without proper access controls. The presence of file operations without explicit mention of sanitization or access controls also warrants a cautious approach.
In conclusion, the "football-standings" plugin demonstrates a commendable commitment to secure coding practices, particularly in SQL and output handling, and has a clean vulnerability history. The primary weakness lies in the complete lack of nonce and capability checks, which represents a potential future risk if the plugin's functionality expands. The file operation also introduces a minor point of concern that might benefit from further scrutiny.
Key Concerns
- Missing nonce checks
- Missing capability checks
- File operations without explicit sanitization/checks
Sport livescores: foootball and basketball results, fixtures and standings Security Vulnerabilities
Sport livescores: foootball and basketball results, fixtures and standings Code Analysis
Output Escaping
Sport livescores: foootball and basketball results, fixtures and standings Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Sport livescores: foootball and basketball results, fixtures and standings Maintenance & Trust
Maintenance Signals
Community Trust
Sport livescores: foootball and basketball results, fixtures and standings Alternatives
JoomSport – for Sports: Team & League, Football, Hockey & more
joomsport-sports-league-results-management
Create PRO sports website for your club, sports team or sports league! Soccer, Football, Hockey, Basketball, Volleyball, Handball, eSport & others.
SportsPress for Basketball
sportspress-for-basketball
SportsPress for Basketball is an extension for SportsPress, an all-in-one sports data plugin that helps sports teams set up a basketball website.
CyberPress
cyberpress
Manage eSport Tournaments, Matches, Teams and Players.
Victorious Fantasy Sports
victorious
Victorious Fantasy Sports transforms your WordPress site into a fully‑featured fantasy platform. Create contests and leagues for any sport or market, …
Football Club Manager
football-club-manager
Easily manage your amateur football club. Create team pages, player info, and integrate match data!
Sport livescores: foootball and basketball results, fixtures and standings Developer Profile
1 plugin · 100 total installs
How We Detect Sport livescores: foootball and basketball results, fixtures and standings
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/football-standings/assets/styles.css/wp-content/plugins/football-standings/assets/jquery.custom.js/wp-content/plugins/football-standings/assets/jquery.custom.jsfootball-standings/assets/styles.css?ver=football-standings/assets/jquery.custom.js?ver=HTML / DOM Fingerprints
cfg777data-o_namedata-def_colordata-def[777score][777score path=/live][777score path=/football/tournaments/england/premier-league][777score path=/football/tournaments/england/premier-league/results]