
Grants for Nonprofits Widget Security & Risk Analysis
wordpress.org/plugins/grants-for-nonprofits-widgetThe Grants for Nonprofits Widget is an aggregation of new grant opportunities for nonprofits and other organizations.
Is Grants for Nonprofits Widget Safe to Use in 2026?
Generally Safe
Score 85/100Grants for Nonprofits Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "grants-for-nonprofits-widget" v1.1 plugin exhibits a strong security posture based on the provided static analysis. It reports zero AJAX handlers, REST API routes, shortcodes, or cron events, resulting in no identified entry points that could be exploited. Furthermore, the absence of dangerous functions, raw SQL queries, file operations, external HTTP requests, and the complete lack of taint analysis flows with unsanitized paths all contribute to a generally secure codebase. The plugin also has no known vulnerabilities in its history, which is a positive indicator. However, a significant concern arises from the complete lack of output escaping (0% properly escaped). This means that any dynamic data displayed by the widget is vulnerable to Cross-Site Scripting (XSS) attacks. Additionally, the absence of nonce and capability checks, while not directly exploitable due to the lack of entry points, indicates a potential oversight in securing future functionalities should they be added. The plugin demonstrates good practices in preventing direct code execution vulnerabilities but falls short in protecting against common output-based attacks.
Key Concerns
- No output escaping implemented
- No nonce checks
- No capability checks
Grants for Nonprofits Widget Security Vulnerabilities
Grants for Nonprofits Widget Release Timeline
Grants for Nonprofits Widget Code Analysis
Output Escaping
Grants for Nonprofits Widget Attack Surface
WordPress Hooks 1
Maintenance & Trust
Grants for Nonprofits Widget Maintenance & Trust
Maintenance Signals
Community Trust
Grants for Nonprofits Widget Alternatives
Super RSS Reader – Add attractive RSS Feed Widget
super-rss-reader
Display any RSS feed(s) in widget with news ticker effect in multiple tabs, thumbnails, customizable color themes and more.
RSS Feed Widget
rss-feed-widget
RSS Feed Widget with customizable slider. Feed title, description, image, censorship and a few other features which you can use.
Admin Dashboard RSS Feed
admin-dashboard-rss-feed
Admin Dashboard RSS Feed displays company news in the WordPress Admin Dashboard using an RSS feed. It provides quick access to the latest updates.
Subscribe Here Widget
subscribe-here-widget
Subscribe Here displays a visible plugin widget in the sidebar with Subscribe by Rss & Subscribe by Email(through Feedburner) options.
Add to Feedly
add-to-feedly
This plugin provides a widget to Display a "Follow on Feedly" banner in your sidebar and a floating button at bottom.
Grants for Nonprofits Widget Developer Profile
1 plugin · 10 total installs
How We Detect Grants for Nonprofits Widget
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
grantsid="Nonprofit Grants"<small><a target="_blank" href="http://feeds.feedburner.com/EasyGrantsForNonProfitsAndBusinesses" title="RSS of source feed for non profit grants">Get The RSS Feed</a></small><br><iframe longdesc="Grants for Nonprofits Feed" title="Grants for Nonprofits Feed" id="Nonprofit Grants" frameBorder="0" scrolling=no width="100%" frameborder="0" height="304px" src="http://fantasyknuckleheads.com/mashed/easy-grants-iframe.html"></iframe>