
Google Trends & Charts Security & Risk Analysis
wordpress.org/plugins/google-trends-und-chartsGibt Google Trends Graphen per Shortcode aus, zudem kann es die Top-Suchanfragen bei Google in einem Widget oder per Shortcode ausgeben.
Is Google Trends & Charts Safe to Use in 2026?
Generally Safe
Score 85/100Google Trends & Charts has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "google-trends-und-charts" plugin version 2.0 exhibits a generally strong security posture based on the static analysis. The absence of dangerous functions, SQL injection vulnerabilities (all queries use prepared statements), file operations, and external HTTP requests are positive indicators. Crucially, there are no critical or high-severity taint flows identified, suggesting a low risk of remote code execution or sensitive data exposure through code manipulation.
However, a notable concern is the low percentage of properly escaped output (22%). This indicates a significant risk of Cross-Site Scripting (XSS) vulnerabilities, where user-supplied data might be rendered directly in the browser without proper sanitization, allowing attackers to inject malicious scripts. While the plugin has zero known CVEs and a clean vulnerability history, this can also be attributed to its limited attack surface and lack of complex functionalities that might attract vulnerability research. The presence of capability checks on one entry point is a good practice, but the lack of nonce checks on the shortcodes, which represent the entire entry points, is a missed opportunity to prevent CSRF attacks.
In conclusion, while the plugin avoids common critical vulnerabilities like RCE and SQLi, the high rate of unescaped output presents a tangible XSS risk. The clean vulnerability history is a positive sign but doesn't fully mitigate the risks identified in the static analysis. Addressing the output escaping and considering nonce checks for shortcodes would significantly improve its security.
Key Concerns
- Low output escaping percentage
- Missing nonce checks on shortcodes
Google Trends & Charts Security Vulnerabilities
Google Trends & Charts Code Analysis
Output Escaping
Google Trends & Charts Attack Surface
Shortcodes 3
WordPress Hooks 3
Maintenance & Trust
Google Trends & Charts Maintenance & Trust
Maintenance Signals
Community Trust
Google Trends & Charts Alternatives
Google Trends Shortcode
google-trends-shortcode
This plugin embeds a Google Trends graph to display using a shortcode.
Simple Map
simple-map
Easy way to embed google map(s).
Simple Shortcode for Google Maps
simple-google-maps-short-code
A simple shortcode for embedding Google Maps in any WordPress post, page or widget.
Web Stories Widgets For Elementor
shortcodes-for-amp-web-stories-and-elementor-widget
This addon will helps you to easily represent Google Web stories in the Page/Post using Elementor Widget and shortcodes.
Super Cool Ad Inserter Plugin
super-cool-ad-inserter
This plugin enables the insertion of widget areas in your post's content via programmatic insertion at display time, via a shortcode, or via bloc …
Google Trends & Charts Developer Profile
3 plugins · 140 total installs
How We Detect Google Trends & Charts
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
https://ssl.gstatic.com/trends_nrtr/2578_RC02/embed_loader.jsHTML / DOM Fingerprints
trends<div style="height:trends.embed.renderExploreWidget("TIMESERIES"trends.embed.renderWidget("dailytrends"