
Geo Content Security & Risk Analysis
wordpress.org/plugins/geo-targetly-geo-contentChange content based on visitor geolocation (country, state, city, lat/lng/radius)
Is Geo Content Safe to Use in 2026?
Generally Safe
Score 99/100Geo Content has a strong security track record. Known vulnerabilities have been patched promptly.
The "geo-targetly-geo-content" plugin version 7.0.1 exhibits a generally good security posture based on the static analysis. The absence of dangerous functions, all SQL queries utilizing prepared statements, and complete output escaping are significant strengths, indicating careful coding practices in these areas. Furthermore, the plugin has no known unpatched vulnerabilities, which is a positive sign. However, the analysis does reveal some potential areas of concern that warrant attention.
The plugin has an attack surface of 2 shortcodes, and critically, 0 nonce checks are present. While the static analysis shows no unprotected entry points and no taint flows, the lack of nonce checks on shortcodes means that a user could potentially trigger these shortcodes without proper verification, which could lead to unexpected behavior or even exploitation if they interact with sensitive data or functions. The presence of external HTTP requests also introduces a dependency on external services, which could be a vector for supply chain attacks or denial-of-service if those services are compromised or unavailable.
The vulnerability history shows a single past CVE related to Cross-site Scripting. While there are no currently unpatched vulnerabilities, this past incident, coupled with the lack of nonce checks, suggests that the plugin might be susceptible to certain types of input manipulation if not carefully implemented within WordPress's security framework. The plugin's strengths in secure SQL and output handling are commendable, but the lack of robust input validation and authorization for its shortcodes represents a weakness that should be addressed.
Key Concerns
- Shortcodes lack nonce checks
- External HTTP requests present
- Past XSS vulnerability recorded
Geo Content Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Geo Content <= 6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
Geo Content Code Analysis
Output Escaping
Geo Content Attack Surface
Shortcodes 2
WordPress Hooks 5
Maintenance & Trust
Geo Content Maintenance & Trust
Maintenance Signals
Community Trust
Geo Content Alternatives
belingoGeo
belingogeo
The plugin adds the ability to select cities, unique pages are created with a unique url for each city. This allows you to uniqueize content.
Geo Redirect
geo-targetly-geo-redirect
Redirect visitors based on geolocation (country, state, city, lat/lng/radius)
IP2Location Tags
ip2location-tags
Displays visitor’s geolocation information, geo-targeting and customize the page content for different countries based on users location.
IP2Location Variables
ip2location-variables
Library helps you to create location based website or content easily by integrating geolocation solution to your site. It supports both IPv4 and IPv6 …
Geo Targetly Geo Translate
geo-targetly-geo-translate
Auto-translate and localize your website based on visitor location. Show the right language variant to the right user.
Geo Content Developer Profile
9 plugins · 1K total installs
How We Detect Geo Content
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/geo-targetly-geo-content/?ver=/wp-content/plugins/geo-targetly-geo-content/script.js.php?ver=HTML / DOM Fingerprints
geotargetlygeocontentgeotargetlygeocontent_content_geotargetlygeocontent_default<span class='geotargetlygeocontent<span style='display:none;' class='geotargetlygeocontent_content__default'>