
HTMLPress Security & Risk Analysis
wordpress.org/plugins/htmlpressSimple HTML snippets generator and use it with shortcode.
Is HTMLPress Safe to Use in 2026?
Generally Safe
Score 85/100HTMLPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "htmlpress" v0.1.1 plugin exhibits a concerning security posture primarily due to a significant number of unprotected AJAX handlers. With 8 out of 10 entry points lacking authentication checks, this plugin presents a wide attack surface that could be exploited by unauthenticated users. While the code analysis indicates good practices in SQL query handling (100% prepared statements) and a high percentage of properly escaped output (88%), the absence of capability and nonce checks on these AJAX handlers is a critical oversight. The taint analysis revealed flows with unsanitized paths, though thankfully no critical or high-severity issues were identified. The complete lack of any recorded vulnerabilities in its history suggests either a short history or excellent past security, but this does not mitigate the immediate risks identified in the current code analysis. The plugin's reliance on the Select2 bundled library is a minor concern if it's not kept updated, but the primary risk stems from the exposed AJAX endpoints.
Key Concerns
- 8 AJAX handlers without auth checks
- 0 Nonce checks present
- 0 Capability checks present
- 2 Flows with unsanitized paths
- Bundled library (Select2)
HTMLPress Security Vulnerabilities
HTMLPress Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
HTMLPress Attack Surface
AJAX Handlers 8
Shortcodes 2
WordPress Hooks 7
Maintenance & Trust
HTMLPress Maintenance & Trust
Maintenance Signals
Community Trust
HTMLPress Alternatives
OS HTML5 Shortcodes
os-html5-shortcodes
Using shortcodes you can easily add HTML codes such as ad codes, javascript, video embedding, etc in your pages, posts or custom posts.
Column Shortcodes
column-shortcodes
Adds shortcodes to easily create columns in your posts or pages.
Apollo13 Framework Extensions
apollo13-framework-extensions
Adds custom post types, shortcodes and some features that are used in themes built on Apollo13 Framework.
Futurio Extra
futurio-extra
Futurio Extra add extra features to Futurio theme like widgets, WooCommerce options, Elementor widgets, one click demo import and much more.
ND Shortcodes
nd-shortcodes
The plugin adds some useful components to your page builder ( Elementor or WP Bakery Page Builder ). All components are full responsive and retina rea …
HTMLPress Developer Profile
5 plugins · 4K total installs
How We Detect HTMLPress
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/htmlpress/assets/css/htmlpress.css/wp-content/plugins/htmlpress/assets/js/htmlpress.js/wp-content/plugins/htmlpress/assets/js/module.js/wp-content/plugins/htmlpress/assets/js/htmlpress.js/wp-content/plugins/htmlpress/assets/js/module.jshtmlpress/assets/css/htmlpress.css?ver=htmlpress/assets/js/htmlpress.js?ver=htmlpress/assets/js/module.js?ver=HTML / DOM Fingerprints
htmlpress-wp-scriptshtmlpress-wp-stylesdata-module-idHTMLPress_VER