
Get answer Security & Risk Analysis
wordpress.org/plugins/get-answerA game where you can ask a question and get an answer to it. The answer is fictitious and shouldn’t be accepted a factual.
Is Get answer Safe to Use in 2026?
Generally Safe
Score 85/100Get answer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'get-answer' plugin v1.0 exhibits a strong security posture based on the static analysis. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and the complete output escaping suggest good coding practices. Furthermore, the lack of file operations and external HTTP requests limits potential attack vectors. The plugin's vulnerability history is entirely clean, with no recorded CVEs, which indicates a history of secure development and maintenance.
However, a critical area of concern is the complete absence of nonce checks and capability checks across all entry points. While the current static analysis shows zero unprotected entry points and zero taint flows, this can be misleading. The presence of one shortcode, an entry point, without any authorization or nonce validation, creates a significant potential for vulnerabilities if the shortcode's functionality is ever extended or if its current function inadvertently exposes sensitive information or allows for unintended actions. The zero taint analysis results are likely due to the limited scope of the analysis or the fact that the plugin is very simple; it does not negate the risk posed by the missing security checks.
In conclusion, while the plugin demonstrates excellent secure coding fundamentals regarding SQL and output handling, the fundamental lack of nonce and capability checks on its shortcode entry point is a glaring weakness. This oversight, despite the current lack of recorded vulnerabilities and zero unprotected entry points in the provided analysis, represents a substantial future risk that could be exploited if the plugin's functionality evolves or if the analysis scope is broadened. The plugin has a solid foundation but is missing essential security gates.
Key Concerns
- Missing nonce checks on shortcode
- Missing capability checks on shortcode
Get answer Security Vulnerabilities
Get answer Release Timeline
Get answer Code Analysis
Get answer Attack Surface
Shortcodes 1
WordPress Hooks 2
Maintenance & Trust
Get answer Maintenance & Trust
Maintenance Signals
Community Trust
Get answer Alternatives
Bolão
bolao
With this plugin is possible to make game between users of wordpress.
AnsPress – Question and answer
anspress-question-answer
A free question and answer plugin for WordPress. Made with developers in mind, and highly customizable.
Yes/No Chart
yesno
This plugin provides the function to create a set of questions to answer with "yes / no (/or other)". Yes/Noチャートを作れるプラグインです。
Happy WooCommerce FAQs – Ultimate Product FAQ Plugin
faq-for-woocommerce
WooCommerce Product FAQ Plugin and accordion plugin create FAQs with Google FAQ schema, AI Generator, Comment and customization support.
PuzzleMe – Interactive Puzzles for WordPress – Easily publish crosswords, quizzes, word searches and more
puzzleme
PuzzleMe makes it easy to add interactive games to your WordPress website - no coding required.
Get answer Developer Profile
8 plugins · 130 total installs
How We Detect Get answer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
uclass_xgamegetanswer_windowuclass_xgamegetanswer_titleuclass_xgamegetanswer_help_titleuclass_xgamegetanswer_b_startuclass_xgamegetanswer_b_start_paddinguclass_xgamegetanswer_b_helpuclass_xgamegetanswer_b_help_paddinguclass_xgamegetanswer_help_content+12 more Copyright 2020 oleksandr87 (email:ustymenkooleksandrnew@gmail.com) This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; either version 2 of the License, or+8 more[get_answer]