
hreflang x-default Tag for WPML | inventivo Security & Risk Analysis
wordpress.org/plugins/hreflang-x-default-tag-for-wpml-inventivohreflang x-default Tag for WPML
Is hreflang x-default Tag for WPML | inventivo Safe to Use in 2026?
Generally Safe
Score 85/100hreflang x-default Tag for WPML | inventivo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "hreflang-x-default-tag-for-wpml-inventivo" v1.0.6 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any detected dangerous functions, raw SQL queries, file operations, external HTTP requests, or critical/high severity taint flows is a positive indicator. Furthermore, the plugin's attack surface appears to be minimal, with no AJAX handlers, REST API routes, shortcodes, or cron events, which significantly reduces the potential for exploitation. The lack of any recorded vulnerabilities in its history also suggests a mature and stable codebase.
However, a significant concern arises from the complete lack of output escaping. With two total outputs identified and 0% properly escaped, this presents a substantial risk for Cross-Site Scripting (XSS) vulnerabilities. Any user-supplied data that is directly rendered to the browser without proper sanitization can be exploited by attackers. While the plugin demonstrates good practices in other areas, this single omission in output handling is a critical weakness that needs immediate attention. The absence of nonce and capability checks, while less concerning given the limited attack surface, could become an issue if new entry points are introduced in future versions without corresponding security checks.
Key Concerns
- Unescaped output found
- No nonce checks
- No capability checks
hreflang x-default Tag for WPML | inventivo Security Vulnerabilities
hreflang x-default Tag for WPML | inventivo Code Analysis
Output Escaping
hreflang x-default Tag for WPML | inventivo Attack Surface
WordPress Hooks 4
Maintenance & Trust
hreflang x-default Tag for WPML | inventivo Maintenance & Trust
Maintenance Signals
Community Trust
hreflang x-default Tag for WPML | inventivo Alternatives
WPFront Scroll Top
wpfront-scroll-top
Adds a lightweight and smooth "Scroll to Top" button to your WordPress site, improving navigation and user experience with customizable options.
Smooth Back To Top Button
smooth-back-to-top-button
Smooth Back To Top button with scroll progress indicator.
Smooth Scroll Up
smooth-scroll-up
Smooth Scroll Up is a lightweight plugin that creates a customizable back to top feature in your WordPress website.
Back to the Top
back-to-the-top
Back to the Top is a WordPress plugin that return to scroll smoothly to the top of the page. You can scroll to the smooth anchor link in the page.
Back To Top Pro
back-to-top-pro
Scroll To Top plus 3 more Buttons including Back to Top, Home, Back and Email Buttons. Multiple styles, colors, position, sizes, opacity and more
hreflang x-default Tag for WPML | inventivo Developer Profile
5 plugins · 260 total installs
How We Detect hreflang x-default Tag for WPML | inventivo
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/hreflang-x-default-tag-for-wpml-inventivo/admin/css/admin-styles.csshreflang-x-default-tag-for-wpml-inventivo/admin/css/admin-styles.css?ver=HTML / DOM Fingerprints
hreflang-x-default-tag-for-wpml-inventivo-wrapperhreflang-x-default-tag-for-wpml-inventivo-element